<Vulnerability name="CVE-2026-18785">
    <DocumentDistribution xml:lang="en">Copyright © 2012 Red Hat, Inc. All rights reserved.</DocumentDistribution>
    <ThreatSeverity>Moderate</ThreatSeverity>
    <PublicDate>2026-08-04T16:45:08</PublicDate>
    <Bugzilla id="2511141" url="https://bugzilla.redhat.com/show_bug.cgi?id=2511141" xml:lang="en:us">
open62541: open62541: Use-after-free vulnerability via local manipulation
    </Bugzilla>
    <CWE>CWE-825</CWE>
    <Details xml:lang="en:us" source="Mitre">
A vulnerability was determined in o6 open62541 ca356b088ada7dee824d1b4acd07c1ff07ce242b. Impacted is the function UA_Client_getRemoteDataTypes of the file examples/custom_datatype/client_types_custom.c. Executing a manipulation can lead to use after free. It is possible to launch the attack on the local host. The exploit has been publicly disclosed and may be utilized. The project closed the issue report, stating that this is not the official way to report a security vulnerability.
    </Details>
    <Details xml:lang="en:us" source="Red Hat">
A flaw was found in open62541. A local attacker can exploit a use-after-free vulnerability in the UA_Client_getRemoteDataTypes function by performing a specific manipulation. This could potentially lead to limited information disclosure, data corruption, or a Denial of Service (DoS).
    </Details>
    <Statement xml:lang="en:us">
This Moderate severity use-after-free flaw in open62541 allows a local attacker to trigger a crash or potentially corrupt data through specific manipulation of the UA_Client_getRemoteDataTypes function. While publicly disclosed, exploitation requires local access and specific conditions, limiting its broader impact on typical Red Hat deployments.
    </Statement>
    <References xml:lang="en:us">
https://www.cve.org/CVERecord?id=CVE-2026-18785
https://nvd.nist.gov/vuln/detail/CVE-2026-18785
https://github.com/gff-cw/information/issues/12
https://github.com/open62541/open62541/issues/8131
https://vuldb.com/cve/CVE-2026-18785
https://vuldb.com/submit/857052
https://vuldb.com/vuln/385787
https://vuldb.com/vuln/385787/cti
    </References>
</Vulnerability>