CVE-2026-63559: o6 Automation open62541 Integer Overflow or Wraparound
An integer overflow in the UAVariant arrayDimensions product computation in open62541 may allow a remote attacker to read out-of-bounds heap memory, potentially disclosing sensitive information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-63559?
The severity of CVE-2026-63559 is classified as high with a score of 7.5.
What is CVE-2026-63559 about?
CVE-2026-63559 describes an integer overflow in the UA_Variant arrayDimensions product computation in open62541 that may allow a remote attacker to read out-of-bounds heap memory.
How do I fix CVE-2026-63559?
To fix CVE-2026-63559, update to the latest version of open62541 that addresses the integer overflow vulnerability.
What could be the impact of CVE-2026-63559?
The impact of CVE-2026-63559 is the potential disclosure of sensitive information due to out-of-bounds memory access.
Who is affected by CVE-2026-63559?
Users of open62541 are affected by CVE-2026-63559 if they employ the UA_Variant arrayDimensions feature.