A crafted HTTP packet with a -1 content-length header can create a denial-of-service condition in Softing Secure Integration Server V1.22.
The product subtracts one value from another, such that the result is less than the minimum allowable integer value, which produces a value that is not equal to the correct result.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Edgeaggregator | Softing | 3.1 (including) | 3.1 (including) |
Edgeconnector | Softing | 3.1 (including) | 3.1 (including) |
Opc | Softing | 5.2 (including) | 5.2 (including) |
Opc_ua_c++_software_development_kit | Softing | 6 (including) | 6 (including) |
Secure_integration_server | Softing | 1.22 (including) | 1.22 (including) |
Uagates | Softing | 1.74 (including) | 1.74 (including) |