CNNVD-202602-271 Information

CNNVD ID

CNNVD-202602-271

CVE-2025-64438

  • CNNVD Published: 2026-02-03

Description (Chinese)

eProsima Fast DDS是eProsima公司的OMG(对象管理组)DDS(数据分发服务)标准的 C++ 实现。 eProsima Fast DDS 3.4.1之前版本、3.3.1之前版本和2.6.11之前版本存在安全漏洞,该漏洞源于处理RTPS GAP子消息时存在无限循环,可能导致内存耗尽和进程终止。

Description (English)

eProsima Fast DDS is a C++ standard for the OMG (target management group) DDS (data distribution services) of eProsima. There is a security loophole in previous versions of eProsima Fast DDS 3.4.1, 3.3.1 and 2.6.11, which stems from an unlimited cycle of processing RTPS GAP submessages, which may lead to depletion of memory and process termination.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

eProsima

Published

2026-02-03

Last Modified

2026-02-24

References

https://github.com/eProsima/Fast-DDS/commit/0b0cb308eaeeb2175694aa0a0a723106824ce9a7 https://github.com/eProsima/Fast-DDS/commit/8ca016134dac20b6e30e42b7b73466ef7cdbc213 https://github.com/eProsima/Fast-DDS/commit/71da01b4aea4d937558984f2cf0089f5ba3c871f https://security-tracker.debian.org/tracker/CVE-2025-64438 https://access.redhat.com/security/cve/cve-2025-64438

Patch

https://github.com/eProsima/Fast-DDS/releases

Share on: