VDB
CVE-2023-39949
CVE-2023-39949
PUBLISHED
CVSS 7.5 HIGH
eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.9.1 and 2.6.5, improper validation of sequence numbers may lead to remotely reachable assertion failure. This can remotely crash any Fast-DDS process. Versions 2.9.1 and 2.6.5 contain a patch for this issue.
EPSS 1.04% · 61.2th percentile
Risk Scores
CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
1.04%
61.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| debian | debian_linux | 12.0, 11.0 |
| eprosima | fast_dds | 2.6.0, 2.9.0 |
| eProsima | Fast-DDS | *, * |
Timeline
- Aug 11, 2023 CVE Published
- Aug 12, 2023 EPSS Score
- Sep 15, 2023 EPSS Score
- Oct 19, 2023 EPSS Score
- Nov 21, 2023 EPSS Score
- Dec 25, 2023 EPSS Score
- Mar 2, 2024 EPSS Score
- Apr 4, 2024 EPSS Score
- May 8, 2024 EPSS Score
- Jun 11, 2024 EPSS Score
- Jul 15, 2024 EPSS Score
- Aug 17, 2024 EPSS Score