Description
Improper validity period check for root issuer certificate in CycloneCrypto cryptographic wrapper of S2OPC allows a certificate issued by this root issuer to be considered trusted
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
Use mbedtls cryptographic wrapper of S2OPC. Or upgrade S2OPC to use CycloneCrypto wrapper of release version >= 2.0.0 or master commit >= 839ae878
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
| Link | Providers |
|---|---|
| https://gitlab.com/systerel/S2OPC/-/work_items/1804 |
|
History
Wed, 29 Jul 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Systerel
Systerel s2opc |
|
| Vendors & Products |
Systerel
Systerel s2opc |
Wed, 29 Jul 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper validity period check for root issuer certificate in CycloneCrypto cryptographic wrapper of S2OPC allows a certificate issued by this root issuer to be considered trusted | |
| Title | Improper Certificate Validation in S2OPC | |
| Weaknesses | CWE-295 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitLab
Published:
Updated: 2026-07-29T16:34:09.688Z
Reserved: 2026-07-29T16:33:59.899Z
Link: CVE-2026-18257
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-07-29T17:30:04Z
Weaknesses