PT-2022-10725 · Rti · Rti Connext Professional+1

Published

2022-05-05

·

Updated

2025-02-05

·

CVE-2021-38435

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions RTI Connext DDS Professional and Connext DDS Secure versions 4.2x through 6.1.0
Description The issue arises from incorrect buffer size calculation during allocation, potentially leading to a buffer overflow.
Recommendations For versions 4.2x through 6.1.0, consider applying configuration changes to restrict buffer allocation until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

CVE-2021-38435

Affected Products

Connext Dds Secure
Rti Connext Professional