top of page
perceptive_background_267k.jpg

Buffer Overflow vulnerability exists in open62541 1.5.5 when the Local Discovery Server (LDS) is built with multicast discovery enabled through the MDNSD backen…

Published:

3 augustus 2026 om 22:00:00

Alert date:

4 augustus 2026 om 23:03:20

Source:

nvd.nist.gov

Click to open the original link from this advisory

Network Infrastructure, Critical Infrastructure

A buffer overflow vulnerability exists in open62541 version 1.5.5 affecting the Local Discovery Server (LDS) when built with multicast discovery enabled via the MDNSD backend. An unauthenticated remote attacker can exploit this by sending a RegisterServer or RegisterServer2 request containing a large number of unique discoveryUrls. The vulnerability results in a denial of service condition. No authentication is required to trigger the vulnerability, making it accessible to any remote attacker. The affected component is the OPC UA server library's discovery and multicast DNS subsystem. Relevant source files include ua_discovery_mdns.c and ua_services_discovery.c. The issue is tracked on GitHub under issue #8094.

Technical details

Mitigation steps:

Affected products:

open62541 1.5.5

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Deze website toont informatie afkomstig van externe bronnen; Perceptive aanvaardt geen verantwoordelijkheid voor de juistheid, volledigheid of actualiteit van deze informatie.

bottom of page