Search CVE reports


Toggle filters

21 – 30 of 31 results


CVE-2023-50716

Medium priority
Needs evaluation

eProsima Fast DDS (formerly Fast RTPS) is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.13.0, 2.12.2, 2.11.3, 2.10.3, and 2.6.7, an invalid DATA_FRAG Submessage...

1 affected package

fastdds

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fastdds Needs evaluation Needs evaluation Not in release
Show less packages

CVE-2023-50257

Medium priority
Needs evaluation

eProsima Fast DDS (formerly Fast RTPS) is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Even with the application of SROS2, due to the issue where the data (`p[UD]`) and...

1 affected package

fastdds

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fastdds Needs evaluation Needs evaluation Not in release
Show less packages

CVE-2023-42459

Medium priority
Needs evaluation

Fast DDS is a C++ implementation of the DDS (Data Distribution Service) standard of the OMG (Object Management Group). In affected versions specific DATA submessages can be sent to a discovery locator which may trigger a free...

1 affected package

fastdds

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fastdds Needs evaluation Needs evaluation Not in release Not in release
Show less packages

CVE-2023-39949

Medium priority
Fixed

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.9.1 and 2.6.5, improper validation of sequence numbers may lead to remotely...

1 affected package

fastdds

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fastdds Not affected Fixed Not in release Not in release
Show less packages

CVE-2023-39948

Medium priority
Fixed

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.10.0 and 2.6.5, the `BadParamException` thrown by Fast CDR is not caught in Fast DDS. This can...

1 affected package

fastdds

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fastdds Not affected Fixed Not in release Not in release
Show less packages

CVE-2023-39947

Medium priority
Fixed

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.11.1, 2.10.2, 2.9.2, and 2.6.6, even after the fix at commit 3492270,...

1 affected package

fastdds

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fastdds Not affected Fixed Not in release Not in release
Show less packages

CVE-2023-39946

Medium priority
Fixed

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.11.1, 2.10.2, 2.9.2, and 2.6.6, heap can be overflowed by providing a...

1 affected package

fastdds

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fastdds Not affected Fixed Not in release Not in release
Show less packages

CVE-2023-39945

Medium priority
Fixed

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.11.0, 2.10.2, 2.9.2, and 2.6.5, a data submessage sent to PDP port raises...

1 affected package

fastdds

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fastdds Not affected Fixed Not in release Not in release
Show less packages

CVE-2023-39534

Medium priority
Fixed

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.10.0, 2.9.2, and 2.6.5, a malformed GAP submessage can trigger assertion failure, crashing...

1 affected package

fastdds

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fastdds Not affected Fixed Not in release Not in release
Show less packages

CVE-2021-38425

Medium priority

Some fixes available 1 of 3

eProsima Fast DDS versions prior to 2.4.0 (#2269) are susceptible to exploitation when an attacker sends a specially crafted packet to flood a target device with unwanted traffic, which may result in a denial-of-service condition...

2 affected packages

fastdds, dds

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fastdds Not affected Fixed
dds Not affected Not affected Not affected Not affected
Show less packages