HIGH 7.5 NVD
CVE-2026-67857
open62541 1.5.5 contains an out-of-bounds read in the client-side function responseReadNamespacesArray() in src/client/ua_client_connect.c.
open62541 1.5.5 contains an out-of-bounds read in the client-side function responseReadNamespacesArray() in src/client/ua_client_connect.c.
References
- https://github.com/gff-cw/information/issues/9
- https://github.com/open62541/open62541/blob/v1.5.5/examples/client_connect.c
- https://github.com/open62541/open62541/blob/v1.5.5/examples/client_connect_loop.c
- https://github.com/open62541/open62541/blob/v1.5.5/src/client/ua_client_connect.c
- https://github.com/open62541/open62541/issues/8104
This high severity vulnerability with a CVSS score of 7.5 was published on 2026-08-04 via NVD.
vulnfeed aggregates 9182 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.