S2OPC vulnerability

S2OPC through 1.7.3 contains a null pointer dereference in msg_subscription_publish_bs__alloc_notification_message_items() where a failed allocation for DataChangeNotification is overwritten by a successful allocation for EventNotificationList. Attackers can trigger heap allocation failures on sessions with both data-change and event notifications to cause the server process to terminate.

Published 13 Sep 2026Updated 13 Sep 20266 sources
CVSS 6.0

Record history

Record created from the first normalized source observation.
Metadata and source references refreshed.