GHSA-fvxf-r9fw-49pc
Dashboard / Vulnerabilities / GHSA-fvxf-r9fw-49pc
Summary: Incorrect Implementation of Authentication Algorithm in OPCFoundation.NetStandard.Opc.Ua.Core
Details: A vulnerability was discovered in the OPC UA .NET Standard Stack that - allows a malicious client or server to bypass the application authentication mechanism - and allow a connection to an untrusted peer.
References: https://github.com/OPCFoundation/UA-.NETStandard/security/advisories/GHSA-fvxf-r9fw-49pc, https://nvd.nist.gov/vuln/detail/CVE-2022-29865, https://files.opcfoundation.org/SecurityBulletins/OPC%20Foundation%20Security%20Bulletin%20CVE-2022-29865.pdf, https://github.com/OPCFoundation/UA-.NETStandard, https://opcfoundation.org/security
Affected packages
Package
Name: OPCFoundation.NetStandard.Opc.Ua.Core
Purl: pkg:nuget/OPCFoundation.NetStandard.Opc.Ua.Core
Affected ranges
Type: ECOSYSTEM
Events:
