The package node-opcua before 2.74.0 are vulnerable to Denial of Service (DoS) when bypassing the limitations for excessive memory consumption by sending multiple CloseSession requests with the deleteSubscription parameter equal to False.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: snyk

Published: 2022-08-24T00:00:00

Updated: 2022-08-24T05:05:12

Reserved: 2022-02-24T00:00:00


Link: CVE-2022-24375

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-08-24T05:15:07.230

Modified: 2022-08-26T12:52:37.200


Link: CVE-2022-24375

JSON object: View

cve-icon Redhat Information

No data.

CWE