CNNVD-202602-269 Information

CNNVD ID

CNNVD-202602-269

CVE-2025-62799

  • CNNVD Published: 2026-02-03

Description (Chinese)

eProsima Fast DDS是eProsima公司的OMG(对象管理组)DDS(数据分发服务)标准的 C++ 实现。 eProsima Fast DDS 3.4.1之前版本、3.3.1之前版本和2.6.11之前版本存在安全漏洞,该漏洞源于DATA_FRAG接收路径存在堆缓冲区溢出,可能导致拒绝服务或内存损坏。

Description (English)

eProsima Fast DDS is a C++ standard for the OMG (target management group) DDS (data distribution services) of eProsima. There is a security loophole in the pre-Prosima Fast DDS 3.4.1, pre-3.3.1 and pre-2.6.11 versions, which stems from the spilling of a stack of buffer zones through the DATA FRAG reception path, which may result in the denial of services or damage to memory.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

eProsima

Published

2026-02-03

Last Modified

2026-02-24

References

https://github.com/eProsima/Fast-DDS/commit/0c3824ef4991628de5dfba240669dc6172d63b46 https://github.com/eProsima/Fast-DDS/commit/955c8a15899dc6eb409e080fe7dc89e142d5a514 https://github.com/eProsima/Fast-DDS/commit/d6dd58f4ecd28cd1c3bc4ef0467be9110fa94659 https://security-tracker.debian.org/tracker/CVE-2025-62799

Patch

https://github.com/eProsima/Fast-DDS/releases

Share on: