CVE-2021-40871

An issue was discovered in Softing Industrial Automation OPC UA C++ SDK before 5.66. Remote attackers to cause a denial of service (DoS) by sending crafted messages to a OPC/UA client. The client process may crash unexpectedly because of a wrong type cast, and must be restarted.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:softing:datafeed_opc_suite:*:*:*:*:*:*:*:*
cpe:2.3:a:softing:opc:*:*:*:*:*:*:*:*
cpe:2.3:a:softing:secure_integration_server:*:*:*:*:*:*:*:*
cpe:2.3:a:softing:th_scope:*:*:*:*:*:*:*:*

History

21 Nov 2024, 06:24

Type Values Removed Values Added
References () https://industrial.softing.com/ - Vendor Advisory () https://industrial.softing.com/ - Vendor Advisory
References () https://industrial.softing.com/fileadmin/sof-files/pdf/ia/support/Security_Bulletin-CVE-2021-40871.pdf - Vendor Advisory () https://industrial.softing.com/fileadmin/sof-files/pdf/ia/support/Security_Bulletin-CVE-2021-40871.pdf - Vendor Advisory

Information

Published : 2021-11-10 23:15

Updated : 2024-11-21 06:24


NVD link : CVE-2021-40871

Mitre link : CVE-2021-40871

CVE.ORG link : CVE-2021-40871


JSON object : View

Products Affected

softing

  • th_scope
  • opc
  • secure_integration_server
  • datafeed_opc_suite
CWE
CWE-843

Access of Resource Using Incompatible Type ('Type Confusion')