CNNVD-202602-271 Information
CNNVD ID
CNNVD-202602-271
Related CVE
- CNNVD Published: 2026-02-03
Description (Chinese)
eProsima Fast DDS是eProsima公司的OMG(对象管理组)DDS(数据分发服务)标准的 C++ 实现。 eProsima Fast DDS 3.4.1之前版本、3.3.1之前版本和2.6.11之前版本存在安全漏洞,该漏洞源于处理RTPS GAP子消息时存在无限循环,可能导致内存耗尽和进程终止。
Description (English)
eProsima Fast DDS is a C++ standard for the OMG (target management group) DDS (data distribution services) of eProsima. There is a security loophole in previous versions of eProsima Fast DDS 3.4.1, 3.3.1 and 2.6.11, which stems from an unlimited cycle of processing RTPS GAP submessages, which may lead to depletion of memory and process termination.
Hazard Level
High
Vulnerability Type
其他
Affected Vendor
eProsima
Published
2026-02-03
Last Modified
2026-02-24
References
https://github.com/eProsima/Fast-DDS/commit/0b0cb308eaeeb2175694aa0a0a723106824ce9a7 https://github.com/eProsima/Fast-DDS/commit/8ca016134dac20b6e30e42b7b73466ef7cdbc213 https://github.com/eProsima/Fast-DDS/commit/71da01b4aea4d937558984f2cf0089f5ba3c871f https://security-tracker.debian.org/tracker/CVE-2025-64438 https://access.redhat.com/security/cve/cve-2025-64438
Patch
https://github.com/eProsima/Fast-DDS/releases
Share on: