{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3acodesysgateway_client/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:codesys:gateway_client:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":7.5,"id":"CVE-2026-76992"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["Gateway Client"],"_cs_severities":["low"],"_cs_tags":["vulnerability","denial-of-service"],"_cs_type":"advisory","_cs_vendors":["CODESYS"],"content_html":"\u003cp\u003eThe CODESYS Gateway Client is susceptible to a denial-of-service vulnerability (CVE-2026-76992) caused by improper input validation. The application allocates memory based on a size field provided within a gateway response without verifying if that size exceeds reasonable or safe limits. An unauthenticated, remote attacker who controls a malicious or compromised gateway server can send a crafted response with an abnormally large size value. When the Gateway Client attempts to process this response, it performs an oversized memory allocation, leading to exhaustion of system resources and a total loss of availability for the service. This vulnerability highlights the importance of enforcing strict validation on all data structures received from untrusted or external network infrastructure components.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation leads to a denial-of-service condition, rendering the CODESYS Gateway Client unresponsive. This impact is critical for environments relying on CODESYS for industrial automation and process control, as the loss of gateway availability disrupts communication between the engineering environment and field devices.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritized actions for security operations and IT teams:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eAudit network egress and ingress traffic to identify unauthorized or rogue CODESYS gateway servers communicating with the local Gateway Client.\u003c/li\u003e\n\u003cli\u003eImplement network segmentation to ensure that the Gateway Client only communicates with verified and trusted gateway endpoints.\u003c/li\u003e\n\u003cli\u003eApply patches for CVE-2026-76992 as soon as they are made available by the vendor to remediate the unsafe memory allocation logic.\u003c/li\u003e\n\u003cli\u003eMonitor system logs for unexpected application crashes or resource exhaustion events involving the CODESYS Gateway Client process.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-09-30T14:35:11Z","date_published":"2026-09-30T14:35:11Z","id":"https://feed.craftedsignal.io/briefs/2026-09-codesys-gateway-dos/","summary":"An unauthenticated remote attacker can cause a denial-of-service in the CODESYS Gateway Client by providing a malicious gateway response that forces excessive memory allocation.","title":"Denial-of-Service Vulnerability in CODESYS Gateway Client","url":"https://feed.craftedsignal.io/briefs/2026-09-codesys-gateway-dos/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:codesys:gateway_client:*:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}