Check for certificate revocation only considers the first matching CRL and ignores other valid CRLs of the same CA in the CycloneCrypto cryptographic wrapper of S2OPC library. It might allow connection between an OPC UA client and server using a revoked certificate.
References
| Link | Resource |
|---|---|
| https://gitlab.com/systerel/S2OPC/-/work_items/1739 |
Configurations
No configuration.
History
09 Jun 2026, 09:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-06-09 09:16
Updated : 2026-06-09 15:25
NVD link : CVE-2026-6899
Mitre link : CVE-2026-6899
CVE.ORG link : CVE-2026-6899
JSON object : View
Products Affected
No product.
CWE
CWE-299
Improper Check for Certificate Revocation
