VDB

CVE-2023-39949

CVE-2023-39949 PUBLISHED CVSS 7.5 HIGH

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.9.1 and 2.6.5, improper validation of sequence numbers may lead to remotely reachable assertion failure. This can remotely crash any Fast-DDS process. Versions 2.9.1 and 2.6.5 contain a patch for this issue.

EPSS 1.04% · 61.2th percentile

Risk Scores

CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
1.04%
61.2th percentile

Affected Products

VendorProductVersions
debiandebian_linux12.0, 11.0
eprosimafast_dds2.6.0, 2.9.0
eProsimaFast-DDS*, *

Timeline

  • Aug 11, 2023 CVE Published
  • Aug 12, 2023 EPSS Score
  • Sep 15, 2023 EPSS Score
  • Oct 19, 2023 EPSS Score
  • Nov 21, 2023 EPSS Score
  • Dec 25, 2023 EPSS Score
  • Mar 2, 2024 EPSS Score
  • Apr 4, 2024 EPSS Score
  • May 8, 2024 EPSS Score
  • Jun 11, 2024 EPSS Score
  • Jul 15, 2024 EPSS Score
  • Aug 17, 2024 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›