MEDIUM
GmbH
CVE published 2025-09-30
CVE-2019-13542
This vulnerability can let an attacker who can act as a trusted OPC UA client send crafted requests that trigger a NULL pointer dereference in CODESYS V3 OPC UA Server, resulting in a denial-of-service condition. The source advisory ties the issue to CODESYS use within Festo Automation Suite, and notes that Festo Automation Suite 2.8.0.138 no longer bundles CODESYS.