Impact
The vulnerability is a buffer-overflow in the high-level attribute reading logic of open62541 1.5.5, allowing a remote attacker to cause a denial of service. This aligns with a classic stack-based buffer overflow (CWE–121).
Affected Systems
The affected system is the open62541 OPC UA client library version 1.5.5. No other vendor or product versions are listed.
Risk and Exploitability
An unauthenticated remote attacker can trigger the flaw by sending a crafted request, which may crash the application and disrupt service. The EPSS score is unavailable and the issue is not listed in the CISA KEV catalog, but the lack of authentication requirements and the severity of a DoS suggest a moderate to high risk until a patch is applied.
OpenCVE Enrichment