VDB

CVE-2023-39949

CVE-2023-39949 PUBLISHED CVSS 7.5 HIGH

eprosima Fast DDS is a C++ implementation of the Data Distribution Service standard of the Object Management Group. Prior to versions 2.9.1 and 2.6.5, improper validation of sequence numbers may lead to remotely reachable assertion failure. This can remotely crash any Fast-DDS process. Versions 2.9.1 and 2.6.5 contain a patch for this issue.

EPSS 0.11% · 28.8th percentile

Risk Scores

CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
0.11%
28.8th percentile

Affected Products

VendorProductVersions
debiandebian_linux12.0, 11.0
eprosimafast_dds2.6.0, 2.9.0
eProsimaFast-DDS*, *

Timeline

  • Aug 11, 2023 CVE Published
  • Aug 12, 2023 EPSS Score
  • Sep 15, 2023 EPSS Score
  • Oct 18, 2023 EPSS Score
  • Nov 21, 2023 EPSS Score
  • Dec 24, 2023 EPSS Score
  • Jan 27, 2024 EPSS Score
  • Feb 29, 2024 EPSS Score
  • Apr 3, 2024 EPSS Score
  • Jun 9, 2024 EPSS Score
  • Jul 12, 2024 EPSS Score
  • Aug 15, 2024 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›