Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-39949

Опубликовано: 11 авг. 2023
Источник: debian
EPSS Низкий

Описание

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.9.1 and 2.6.5, improper validation of sequence numbers may lead to remotely reachable assertion failure. This can remotely crash any Fast-DDS process. Versions 2.9.1 and 2.6.5 contain a patch for this issue.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
fastddsfixed2.10.1+ds-2package

Примечания

  • https://github.com/eProsima/Fast-DDS/security/advisories/GHSA-3jv9-j9x3-95cg

  • https://github.com/eProsima/Fast-DDS/issues/3236

  • https://github.com/eProsima/Fast-DDS/commit/3aa3ee0259deaebe3d578e0ec200947bdfe7d06f (v2.10.0)

  • https://github.com/eProsima/Fast-DDS/commit/6bc2f8048eb9760dcbd148bdb73492e58da8eb1e (v2.9.2)

EPSS

Процентиль: 30%
0.00113
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 2 лет назад

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.9.1 and 2.6.5, improper validation of sequence numbers may lead to remotely reachable assertion failure. This can remotely crash any Fast-DDS process. Versions 2.9.1 and 2.6.5 contain a patch for this issue.

CVSS3: 7.5
nvd
больше 2 лет назад

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.9.1 and 2.6.5, improper validation of sequence numbers may lead to remotely reachable assertion failure. This can remotely crash any Fast-DDS process. Versions 2.9.1 and 2.6.5 contain a patch for this issue.

CVSS3: 7.5
fstec
больше 2 лет назад

Уязвимость библиотеки Fast DDS, связанная с использованием функции assert() или похожего оператора, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 30%
0.00113
Низкий