CVE-2019-13542: Codesys Control For Beaglebone
Medium severity, CVSS 6.5. EPSS: 1.4% chance of exploitation in the next 30 days.
3S-Smart Software Solutions GmbH CODESYS V3 OPC UA Server, all versions 3.5.11.0 to 3.5.15.0, allows an attacker to send crafted requests from a trusted OPC UA client that cause a NULL pointer dereference, which may trigger a denial-of-service condition.
Affected products
- Codesys Control For Beaglebone: from 3.5.11.0, before 3.5.15.0 (fixed in 3.5.15.0)
- Codesys Control For Empc-a/imx6: from 3.5.11.0, before 3.5.15.0 (fixed in 3.5.15.0)
- Codesys Control For IOT2000: from 3.5.11.0, before 3.5.15.0 (fixed in 3.5.15.0)
- Codesys Control For PFC100: from 3.5.11.0, before 3.5.15.0 (fixed in 3.5.15.0)
- Codesys Control For PFC200: from 3.5.11.0, before 3.5.15.0 (fixed in 3.5.15.0)
- Codesys Control For Raspberry Pi: from 3.5.11.0, before 3.5.15.0 (fixed in 3.5.15.0)
- Codesys Control Rte: from 3.5.11.0, before 3.5.15.0 (fixed in 3.5.15.0)
- Codesys Control Win: from 3.5.11.0, before 3.5.15.0 (fixed in 3.5.15.0)
- Codesys Linux: from 3.5.11.0, before 3.5.15.0 (fixed in 3.5.15.0)
- Codesys Runtime System Toolkit: from 3.5.11.0, before 3.5.15.0 (fixed in 3.5.15.0)
Published 2019-09-17. Last modified 2026-06-17.