CVE-2026-65423
HIGH
8,7
Source: [email protected]
Attack Vector: network
Attack Complexity: low
Privileges Required: low
User Interaction: none
Confidentiality: N/A
Integrity: N/A
Availability: N/A
HIGH
8,8
Source: [email protected]
Attack Vector: network
Attack Complexity: low
Privileges Required: low
User Interaction: none
Scope: unchanged
Confidentiality: high
Integrity: high
Availability: high
Description
AI Translation Available
An integer overflow in the UA_Variant arrayDimensions product
computation in open62541 may allow a remote attacker to trigger an
out-of-bounds write.
190
Integer Overflow or Wraparound
StableCommon Consequences
Security Scopes Affected:
Availability
Integrity
Confidentiality
Access Control
Other
Potential Impacts:
Dos: Crash, Exit, Or Restart
Dos: Resource Consumption (Memory)
Dos: Instability
Modify Memory
Execute Unauthorized Code Or Commands
Bypass Protection Mechanism
Alter Execution Logic
Dos: Resource Consumption (Cpu)
Applicable Platforms
Languages:
Not Language-Specific, C
https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-2…
https://github.com/open62541/open62541/pull/8235/commits/b666d35769ce63998442e4…
https://github.com/open62541/open62541/pull/8236/commits/06b99fef667c8ec5bdf060…
https://github.com/open62541/open62541/pull/8237/commits/1b71d9c5d9c4d02d4729b8…
https://github.com/open62541/open62541/pull/8238/commits/afab4107bfd161da9ce8bb…
https://www.cisa.gov/news-events/ics-advisories/icsa-26-211-08
https://www.o6-automation.com/contact