Vulnerabilities > CVE-2020-27274 - Improper Check for Unusual or Exceptional Conditions vulnerability in Honeywell OPC UA Tunneller

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
honeywell
CWE-754

Summary

Some parsing functions in the affected product do not check the return value of malloc and the thread handling the message is forced to close, which may lead to a denial-of-service condition on the OPC UA Tunneller (versions prior to 6.3.0.8233).

Vulnerable Configurations

Part Description Count
Application
Honeywell
1