CVE-2022-44018: Null Pointer Dereference
Published Jan 25, 2023
·Updated
In Softing uaToolkit Embedded before 1.40.1, a malformed PubSub discovery announcement message can cause a NULL pointer dereference or out-of-bounds memory access in the subscriber application.
Affected Software
1 affected component
Softing uaToolkit Embedded<1.41
Event History
Jan 25, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Jan 26, 2023
Data Sourced
via NVD·09:17 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-44018?
CVE-2022-44018 is a vulnerability in Softing uaToolkit Embedded before version 1.40.1.
2
How does CVE-2022-44018 affect Softing uaToolkit Embedded?
CVE-2022-44018 can cause a NULL pointer dereference or out-of-bounds memory access in the subscriber application of Softing uaToolkit Embedded before version 1.40.1.
3
What is the severity of CVE-2022-44018?
CVE-2022-44018 has a severity rating of 7.5 (high).
4
How can CVE-2022-44018 be fixed?
To fix CVE-2022-44018, update Softing uaToolkit Embedded to version 1.40.1 or later.
5
Where can I find more information about CVE-2022-44018?
More information about CVE-2022-44018 can be found at the following reference: [link](https://industrial.softing.com/fileadmin/psirt/downloads/syt-2022-10.html)