Security Advisory

CVE-2023-28831

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-09-12 09:32:06
Last updated 2025-11-11 20:20:09
Assigner siemens
State PUBLISHED

Description

The OPC UA implementations (ANSI C and C++) in affected products contain an integer overflow vulnerability that could cause the application to run into an infinite loop during certificate validation. This could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.