Headline
GHSA-vh4f-fgpp-x8x2: node-opcua DoS when bypassing limitations for excessive memory consumption
The package node-opcua before 2.74.0 are vulnerable to Denial of Service (DoS) when bypassing the limitations for excessive memory consumption by sending multiple CloseSession
requests with the deleteSubscription
parameter equal to False
.
node-opcua DoS when bypassing limitations for excessive memory consumption
High severity GitHub Reviewed Published Aug 25, 2022 • Updated Sep 1, 2022
Related news
CVE-2022-24375: Snyk Vulnerability Database | Snyk
The package node-opcua before 2.74.0 are vulnerable to Denial of Service (DoS) when bypassing the limitations for excessive memory consumption by sending multiple CloseSession requests with the deleteSubscription parameter equal to False.