Memory Leak in Softing uaToolkit Embedded Affects Industrial Applications
CVE-2022-45920

7.5HIGH

Key Information:

Vendor

Softing

Vendor
CVE Published:
26 January 2023

What is CVE-2022-45920?

In Softing uaToolkit Embedded prior to version 1.41, a vulnerability exists where a malformed CreateMonitoredItems request can result in a memory leak. This issue can compromise the performance of industrial applications, leading to potential disruptions in operations. It is essential for users of Softing uaToolkit Embedded to review their current software versions and apply necessary updates to mitigate this vulnerability.

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.