CVE-2026-63035
o6 Automation · open62541
A heap use-after-free vulnerability in the TransferSubscriptions service of open62541 allows an authenticated attacker to cause a denial of service or potentially execute arbitrary code.
Executive summary
A heap use-after-free vulnerability in the open62541 library, affecting multiple versions, poses a high risk of service disruption or remote code execution.
Vulnerability
This is a use-after-free vulnerability (CWE-416) within the TransferSubscriptions service. An authenticated attacker can trigger this flaw to corrupt memory, resulting in a denial of service or the potential for arbitrary code execution.
Business impact
The ability to crash the service or execute arbitrary code presents a significant risk to operational continuity and system integrity. Given the CVSS score of 8.1, this vulnerability is categorized as high severity, as it allows an attacker to compromise the stability of industrial or automation processes that rely on the open62541 implementation.
Remediation
Immediate Action: Update to the latest version of open62541 or apply the specific patches provided in the vendor repository. Contact o6 Automation directly if direct download is not feasible.
Proactive Monitoring: Monitor system logs for unexpected crashes or service restarts associated with the TransferSubscriptions function.
Compensating Controls: Implement strict network access controls to limit the number of authenticated users who can interact with the OPC UA service.
Exploitation status
Public Exploit Available: No (unknown)
Analyst recommendation
Organizations utilizing open62541 should prioritize patching their deployments immediately to prevent potential exploitation. Given the potential for code execution, this update should be treated with high urgency to ensure the security of the automation environment.