View Issue Details

IDProjectCategoryView StatusLast Update
0008548CTT UA Test Case3 - Feature Requestpublic2023-05-19 15:23
ReporterMartin Regen Assigned ToAlexander Allmendinger  
PrioritynormalSeverityminorReproducibilityhave not tried
Status closedResolutionfixed 
Fixed in Version1.03.09.501 
Summary0008548: Add test case with a certificate chain loop
Description

see https://github.com/OPCFoundation/UA-.NETStandard/security/advisories/GHSA-5q2v-6j86-5h9v

for the disclosed sample code see https://github.com/OPCFoundation/UA-.NETStandard/blob/6711523ffe60d6e4cda6ee190f08d53b29ca7610/Tests/Opc.Ua.Core.Tests/Security/Certificates/CertificateValidatorAlternate.cs#L296

how to build a certificate chain with a loop.

Servers may not detect the loop and hang infinitely, or refuse new secure connections, or consume more and more memory over time.

TagsNo tags attached.
Files Affected

Relationships

related to 0008974 assignedAlexander Allmendinger CTT UA Scripts Add test case with a certificate chain loop 

Activities

Paul Hunkar

2023-01-05 17:22

administrator   ~0018435

Ok to use a fixed set of certificates for this issue (100 year expiration)

Alexander Allmendinger

2023-05-02 13:11

developer   ~0019261

Added Test Case 059 in Certificate Validation CU

Paul Hunkar

2023-05-19 15:23

administrator   ~0019409

review test case in call, agreed to it, closed issue

Issue History

Date Modified Username Field Change
2023-01-03 11:42 Martin Regen New Issue
2023-01-05 17:21 Paul Hunkar Assigned To => Alexander Allmendinger
2023-01-05 17:21 Paul Hunkar Status new => assigned
2023-01-05 17:22 Paul Hunkar Note Added: 0018435
2023-05-02 13:11 Alexander Allmendinger Status assigned => resolved
2023-05-02 13:11 Alexander Allmendinger Resolution open => fixed
2023-05-02 13:11 Alexander Allmendinger Note Added: 0019261
2023-05-19 15:17 Paul Hunkar Description Updated
2023-05-19 15:22 Paul Hunkar Issue cloned: 0008974
2023-05-19 15:22 Paul Hunkar Relationship added related to 0008974
2023-05-19 15:23 Paul Hunkar Status resolved => closed
2023-05-19 15:23 Paul Hunkar Fixed in Version => 1.03.09.501
2023-05-19 15:23 Paul Hunkar Note Added: 0019409