CVE-2021-40871: High severity softing datafeed opc suite vulnerability
An issue was discovered in Softing Industrial Automation OPC UA C++ SDK before 5.66. Remote attackers to cause a denial of service (DoS) by sending crafted messages to a OPC/UA client. The client process may crash unexpectedly because of a wrong type cast, and must be restarted.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-40871?
CVE-2021-40871 is a vulnerability discovered in Softing Industrial Automation OPC UA C++ SDK before version 5.66.
What is the severity of CVE-2021-40871?
CVE-2021-40871 has a severity rating of 7.5, which is considered high.
How does CVE-2021-40871 affect Softing Datafeed OPC Suite?
Softing Datafeed OPC Suite versions up to 5.18 are affected by CVE-2021-40871.
How does CVE-2021-40871 affect Softing OPC?
Softing OPC versions up to 5.66 are affected by CVE-2021-40871.
How does CVE-2021-40871 affect Softing Secure Integration Server?
Softing Secure Integration Server versions up to 1.22, inclusive, are affected by CVE-2021-40871.
How does CVE-2021-40871 affect Softing Th Scope?
Softing Th Scope versions from 3.5 and above are affected by CVE-2021-40871.
How can a remote attacker exploit CVE-2021-40871?
A remote attacker can exploit CVE-2021-40871 by sending crafted messages to an OPC/UA client, causing a denial of service (DoS) and crashing the client process.
How can I fix CVE-2021-40871?
To fix CVE-2021-40871, update Softing Industrial Automation OPC UA C++ SDK to version 5.66 or later.
Is there any additional information about CVE-2021-40871?
For additional information about CVE-2021-40871, refer to the Softing Industrial Automation website and the Security Bulletin provided.