Gallery

Contacts

405 W. Greenlawn Ave Lansing, Michigan 48910

contact@techjacksolutions.com

+1-616-320-4064

A memory corruption flaw in the open-source iso14229 UDS diagnostic library allows an unauthenticated attacker to crash automotive ECUs, industrial controllers, and IoT devices, or read sensitive memory contents, by sending a single malformed diagnostic request. The vulnerability requires no prior authentication and is reachable over standard automotive transport layers including CAN bus, OBD-II, and DoIP. Organizations embedding iso14229 version 0.9.0 or earlier in vehicle or industrial firmware face potential operational disruption, safety-adjacent risk, and exposure of in-memory diagnostic data.

Author

Tech Jacks Solutions