Description
open62541 contains a heap use-after-free in the GDS PushManagement certificate update workflow when UA_ENABLE_GDS_PUSHMANAGEMENT is enabled. This allows a remote attacker to cause a denial of service.
Published:
2026-08-04
Score:
n/a
EPSS:
n/a
KEV:
No
Impact:
n/a
Action:
n/a
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Wed, 05 Aug 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Open62541
Open62541 open62541 |
|
| Vendors & Products |
Open62541
Open62541 open62541 |
Tue, 04 Aug 2026 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Heap Use-After-Free in open62541 GDS PushManagement Allows Remote Denial of Service | |
| Weaknesses | CWE-416 |
Tue, 04 Aug 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | open62541 contains a heap use-after-free in the GDS PushManagement certificate update workflow when UA_ENABLE_GDS_PUSHMANAGEMENT is enabled. This allows a remote attacker to cause a denial of service. | |
| References |
|
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-08-04T21:14:57.699Z
Reserved: 2026-07-30T00:00:00.000Z
Link: CVE-2026-67855
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-08-05T00:00:03Z
Weaknesses