Impact
The vulnerability is a buffer‑overflow in the high‑level attribute reading logic of open62541 1.5.5, allowing a remote attacker to cause a denial of service. This flaw maps to a classic stack‑based buffer overflow (CWE‑120) and also may lead to resource exhaustion (CWE‑400).
Affected Systems
The affected system is the open62541 OPC UA client library version 1.5.5. No other vendor or product versions are listed.
Risk and Exploitability
Based on the description, it is inferred that an attacker can trigger the flaw by sending a crafted request without needing authentication, which may crash the application and disrupt service. The EPSS score is < 1 %, indicating a small but non‑zero likelihood of exploitation, and the issue is not listed in the CISA KEV catalog. The CVSS score of 7.5 indicates high severity.
OpenCVE Enrichment