First published: Wed Jan 25 2023(Updated: )
In Softing uaToolkit Embedded before 1.40.1, a malformed PubSub discovery announcement message can cause a NULL pointer dereference or out-of-bounds memory access in the subscriber application.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Softing uaToolkit Embedded | <1.41 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-44018 is a vulnerability in Softing uaToolkit Embedded before version 1.40.1.
CVE-2022-44018 can cause a NULL pointer dereference or out-of-bounds memory access in the subscriber application of Softing uaToolkit Embedded before version 1.40.1.
CVE-2022-44018 has a severity rating of 7.5 (high).
To fix CVE-2022-44018, update Softing uaToolkit Embedded to version 1.40.1 or later.
More information about CVE-2022-44018 can be found at the following reference: [link](https://industrial.softing.com/fileadmin/psirt/downloads/syt-2022-10.html)