CVE-2024-30259

CVSS 3.1 Score 8.2 of 10 (high)

Details

Published May 14, 2024
CWE ID 122
CWE ID 120

Summary

CVE-2024-30259 is a vulnerability affecting FastDDS, a C++ implementation of the DDS standard used for data communication. Prior to versions 2.14.1, 2.13.5, 2.10.4, and 2.6.8, FastDDS is susceptible to a heap buffer overflow when processing malformed RTPS packets. Exploitation of this vulnerability can lead to a remote crash of any Fast-DDS process, creating an opportunity for a denial of service (DoS) attack. The affected versions have been patched in releases 2.14.1, 2.13.5, 2.10.4, and 2.6.8.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share