Description


eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.11.1, 2.10.2, 2.9.2, and 2.6.6, even after the fix at commit 3492270, malformed `PID_PROPERTY_LIST` parameters cause heap overflow at a different program counter. This can remotely crash any Fast-DDS process. Versions 2.11.1, 2.10.2, 2.9.2, and 2.6.6 contain a patch for this issue.

Related CPE's


a

eprosima

fast_dds

4

o

debian

debian_linux

2

Weaknesses



CWE-122


CWE-787

CVSS impact metrics


CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H

8.2 · High

Information


Source identifier

[email protected]

Vulnerability status

Modified

Published

2023-08-11T12:15:13.587Z

2 years ago

Last modified

2024-11-21T07:16:05.470Z

1 year ago