PT-2024-35109 · Real Time Innovations · Rti Connext Professional
Published
2024-12-13
·
Updated
2025-10-02
·
CVE-2024-52059
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
RTI Connext Professional versions 6.1.0 through 6.1.2.16
RTI Connext Professional versions 7.0.0 through 7.3.0.1
Description
The issue is a Buffer Copy without Checking Size of Input, also known as a 'Classic Buffer Overflow', in RTI Connext Professional's Security Plugins. This allows for the overflow of variables and tags.
Recommendations
For RTI Connext Professional versions 6.1.0 through 6.1.2.16, update to version 6.1.2.17 or later.
For RTI Connext Professional versions 7.0.0 through 7.3.0.1, update to version 7.3.0.2 or later.
Fix
Integer Overflow
Heap Based Buffer Overflow
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Rti Connext Professional