PatchSiren

GmbH CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM GmbH CVE published 2025-09-30

CVE-2019-13542

This vulnerability can let an attacker who can act as a trusted OPC UA client send crafted requests that trigger a NULL pointer dereference in CODESYS V3 OPC UA Server, resulting in a denial-of-service condition. The source advisory ties the issue to CODESYS use within Festo Automation Suite, and notes that Festo Automation Suite 2.8.0.138 no longer bundles CODESYS.