Description
A denial-of-service security issue exists within RSLinx® Classic. A crafted CIP packet with an oversized embedded message request can cause the RSLinx® Classic service to crash, requiring a restart of the service to recover.
Published: 2026-09-01
Score: 8.7 High
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service
Action: Immediate Patch
AI Analysis

Impact

A crafted Common Industrial Protocol packet containing an oversized embedded message can trigger a crash of the RSLinx Classic service, leading to unavailability of the application until it is manually restarted. This vulnerability is a classic overflow type weakness identified as CWE‑120, where improper handling of packet size leads to a service crash regardless of data content. The impact is purely availability loss rather than data leakage or credential compromise.

Affected Systems

The vulnerability affects RSLinx Classic installations run by Rockwell Automation, specifically versions 4.50 and all prior releases. Systems running older builds of the software without any subsequent patch or update are within scope.

Risk and Exploitability

With a CVSS score of 8.7 the weakness is considered high severity. EPSS data is not available, so the likelihood of exploitation in the wild cannot be quantified from the CVE record. The vulnerability is not listed in the CISA KEV catalog. Based on the description, the attack vector is likely remote over the network: an adversary could send a malicious CIP packet to the RSLinx Classic service from an untrusted source or from within the local network if access controls are weak. Successful exploitation would cause the service to crash, requiring a restart and causing a denial of service for users.

Generated by OpenCVE AI on September 1, 2026 at 15:24 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade to the latest RSLinx Classic release (v4.51 or later) which removes the overflow handling flaw
  • Configure firewall or network segmentation so that the RSLinx Classic service is reachable only from trusted, internal sources
  • Deploy monitoring to detect sudden restarts of the service and, if necessary, configure an automatic restart or fail‑over procedure to reduce downtime
  • Implement an intrusion detection or packet filtering rule that discards CIP packets with oversized embedded messages

Generated by OpenCVE AI on September 1, 2026 at 15:24 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 01 Sep 2026 22:00:00 +0000

Type Values Removed Values Added
First Time appeared Rockwellautomation
Rockwellautomation rslinx Classic
Vendors & Products Rockwellautomation
Rockwellautomation rslinx Classic
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 01 Sep 2026 13:45:00 +0000

Type Values Removed Values Added
Description A denial-of-service security issue exists within RSLinx® Classic. A crafted CIP packet with an oversized embedded message request can cause the RSLinx® Classic service to crash, requiring a restart of the service to recover.
Title RSLinx Classic® - Multiple Vulnerabilities
First Time appeared Rockwell Automation
Rockwell Automation rslinx Classic
Weaknesses CWE-120
CPEs cpe:2.3:a:rockwell_automation:rslinx_classic_:v4.50_and_prior:*:*:*:*:*:*:*
Vendors & Products Rockwell Automation
Rockwell Automation rslinx Classic
References
Metrics cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Rockwell Automation Rslinx Classic
Rockwellautomation Rslinx Classic
cve-icon MITRE

Status: PUBLISHED

Assigner: Rockwell

Published:

Updated: 2026-09-01T15:47:10.041Z

Reserved: 2026-05-26T17:18:51.074Z

Link: CVE-2026-9625

cve-icon Vulnrichment

Updated: 2026-09-01T15:47:07.442Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-01T14:17:49.767

Modified: 2026-09-01T20:50:01.960

Link: CVE-2026-9625

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-01T15:30:04Z

Weaknesses
  • CWE-120

    Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')