CVE-2022-1069: Softing Secure Integration Server Out-of-bounds Read
A crafted HTTP packet with a large content-length header can create a denial-of-service condition in Softing Secure Integration Server V1.22.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2022-1069?
CVE-2022-1069 is a vulnerability that allows a crafted HTTP packet with a large content-length header to create a denial-of-service condition in Softing Secure Integration Server V1.22.
Which software products are affected by CVE-2022-1069?
Softing Edgeaggregator Version 3.1, Softing Edgeconnector Version 3.1, Softing OPC Version 5.2, Softing Opc Ua C++ Software Development Kit Version 6, Softing Secure Integration Server Version 1.22, and Softing Uagates Version 1.74 are affected by CVE-2022-1069.
What is the severity of CVE-2022-1069?
CVE-2022-1069 has a severity rating of 7.5 (high).
How can CVE-2022-1069 be exploited?
CVE-2022-1069 can be exploited by sending a crafted HTTP packet with a large content-length header to trigger a denial-of-service condition.
Where can I find more information about CVE-2022-1069?
More information about CVE-2022-1069 can be found at the following references: [Reference 1](https://industrial.softing.com/fileadmin/psirt/downloads/syt-2022-4.html), [Reference 2](https://www.cisa.gov/uscert/ics/advisories/icsa-22-228-04).