{"id":"CVE-2018-12086","aliases":["GHSA-782p-53wq-cxmj"],"url":"https://o3.security/vulnerability/CVE-2018-12086","summary":"High severity vulnerability that affects OPCFoundation.NetStandard.Opc.Ua","details":"Buffer overflow in OPC UA applications allows remote attackers to trigger a stack overflow with carefully structured requests.","published":"2018-09-14T21:29:03.583Z","modified":"2026-08-27T03:47:59.734126436Z","cvss":{"score":7.5,"severity":"HIGH","vector":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"},"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[{"ecosystem":"NuGet","name":"OPCFoundation.NetStandard.Opc.Ua","fixedVersion":"1.4.353.15"}],"fix":null,"references":[{"type":"WEB","url":"http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00027.html"},{"type":"ADVISORY","url":"http://www.securityfocus.com/bid/105538"},{"type":"ADVISORY","url":"http://www.securitytracker.com/id/1041909"},{"type":"ADVISORY","url":"https://opcfoundation-onlineapplications.org/faq/SecurityBulletins/OPC_Foundation_Security_Bulletin_CVE-2018-12086.pdf"},{"type":"ADVISORY","url":"https://www.debian.org/security/2018/dsa-4359"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-27T03:47:59.734126436Z"}}