The OPC UA implementations (ANSI C and C++) in affected products contain an integer overflow vulnerability that could cause the application to run into an infinite loop during certificate validation. This could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.
https://securelist.com/vulnerability-report-q1-2024/112554/
https://cert-portal.siemens.com/productcert/pdf/ssa-711309.pdf
https://cert-portal.siemens.com/productcert/pdf/ssa-118850.pdf
https://cert-portal.siemens.com/productcert/html/ssa-711309.html
https://cert-portal.siemens.com/productcert/html/ssa-118850.html