ZDI-CAN-16927: (Pwn2Own) Unified Automation OPC UA C++ Improper Update of Reference Count Denial-of-Service Vulnerability
This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of Unified Automation OPC UA C++ Demo Server. Authentication is not required to exploit this vulnerability. The specific flaw exists within the OpcUaSecureListenerProcessSessionCallRequest method. A crafted OPC UA message can force the server to incorrectly update a reference count. An attacker can leverage this vulnerability to create a denial-of-service condition on the system.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-16927?
The severity of ZDI-CAN-16927 is considered critical due to the potential for remote denial-of-service attacks.
How do I fix ZDI-CAN-16927?
To fix ZDI-CAN-16927, update to the latest version of Unified Automation OPC UA C++ Demo Server as specified in the vendor's advisory.
Who is affected by ZDI-CAN-16927?
Any installations of Unified Automation OPC UA C++ Demo Server are affected by ZDI-CAN-16927.
Is authentication required to exploit ZDI-CAN-16927?
No, authentication is not required to exploit ZDI-CAN-16927, making it easier for attackers to perform denial-of-service attacks.
What are the potential consequences of ZDI-CAN-16927?
The potential consequences of ZDI-CAN-16927 include service downtime and disruption of operations for affected systems.