VDB
CVE-2023-39949
CVE-2023-39949
PUBLISHED
CVSS 7.5 HIGH
eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.9.1 and 2.6.5, improper validation of sequence numbers may lead to remotely reachable assertion failure. This can remotely crash any Fast-DDS process. Versions 2.9.1 and 2.6.5 contain a patch for this issue.
EPSS 0.11% · 28.8th percentile
Risk Scores
CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
0.11%
28.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| debian | debian_linux | 12.0, 11.0 |
| eprosima | fast_dds | 2.6.0, 2.9.0 |
| eProsima | Fast-DDS | *, * |
Exploit Intelligence
Timeline
- Aug 11, 2023 CVE Published
- Aug 12, 2023 EPSS Score
- Sep 15, 2023 EPSS Score
- Oct 18, 2023 EPSS Score
- Nov 21, 2023 EPSS Score
- Dec 24, 2023 EPSS Score
- Jan 27, 2024 EPSS Score
- Feb 29, 2024 EPSS Score
- Apr 3, 2024 EPSS Score
- Jun 9, 2024 EPSS Score
- Jul 12, 2024 EPSS Score
- Aug 15, 2024 EPSS Score