Rockwell Automation FactoryTalk is vulnerable to a denial of service, caused by an unhandled exception in RSLinxNG.exe when memory allocation size is passed to the C++ new operator in RnaDaSvr.dll. By sending a specially-crafted ConfigureItems message to TCP prot 4241, a remote attacker could exploit this vulnerability to cause RSLinxNG.exe to crash, and results in a denial of service condition.
Denial of service
Rockwell Automation FactoryTalk Linx 6.11
Users are advised to visit the following advised mitigations.