In Softing uaToolkit Embedded before 1.40.1, a malformed PubSub discovery announcement message can cause a NULL pointer dereference or out-of-bounds memory access in the subscriber application.
The product dereferences a pointer that it expects to be valid but is NULL.
Link | Tags |
---|---|
https://industrial.softing.com/fileadmin/psirt/downloads/syt-2022-10.html | vendor advisory |