VDB
Sign up
HIGH7.5

GHSA-fvxf-r9fw-49pc

Incorrect Implementation of Authentication Algorithm in OPCFoundation.NetStandard.Opc.Ua.Core

Quick fix

GHSA-fvxf-r9fw-49pc — OPCFoundation.NetStandard.Opc.Ua.Core: upgrade to the fixed version with the command below.

dotnet add package OPCFoundation.NetStandard.Opc.Ua.Core --version 1.4.368.58

Details

A vulnerability was discovered in the OPC UA .NET Standard Stack that - allows a malicious client or server to bypass the application authentication mechanism - and allow a connection to an untrusted peer.

Are you affected?

Enter the version of the package you're using.

Affected packages

NuGet/OPCFoundation.NetStandard.Opc.Ua.Core
Introduced in: 0Fixed in: 1.4.368.58
Fixdotnet add package OPCFoundation.NetStandard.Opc.Ua.Core --version 1.4.368.58

References