PT-2024-35114 · Real Time Innovations · Rti Connext Professional
Published
2024-12-13
·
Updated
2025-10-02
·
CVE-2024-52063
CVSS v3.1
8.6
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
RTI Connext Professional versions 5.0.0 through 5.3.1.45
RTI Connext Professional versions 6.0.0 through 6.0.1.40
RTI Connext Professional versions 6.1.0 through 6.1.2.21
RTI Connext Professional versions 7.0.0 through 7.3.0.5
Description
The issue is related to a Buffer Copy without Checking Size of Input, also known as a 'Classic Buffer Overflow', which allows Overflow Variables and Tags. This occurs in RTI Connext Professional, specifically in the Core Libraries and Routing Service.
Recommendations
For versions 5.0.0 through 5.3.1.45, update to a version that addresses this issue.
For versions 6.0.0 through 6.0.1.40, update to a version that addresses this issue.
For versions 6.1.0 through 6.1.2.21, update to a version that addresses this issue.
For versions 7.0.0 through 7.3.0.5, update to a version that addresses this issue.
Fix
Memory Corruption
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Rti Connext Professional