OPC UA Legacy Java Stack 2022-04-01 allows a remote attacker to cause a server to stop processing messages by sending crafted messages that exhaust available resources.
The product does not properly control the allocation and maintenance of a limited resource.
Link | Tags |
---|---|
https://opcfoundation.org | vendor advisory |
https://github.com/OPCFoundation/UA-Java-Legacy | product third party advisory |
https://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2022-30551.pdf | patch vendor advisory |