CVE-2019-13566: Buffer Overflow
An issue was discovered in the ROS communications-related packages (aka roscomm or ros-melodic-ros-comm) through 1.14.3. A buffer overflow allows attackers to cause a denial of service and possibly execute arbitrary code via an IP address with a long hostname.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is CVE-2019-13566?
CVE-2019-13566 is a vulnerability in the ROS communications-related packages (ros_comm or ros-melodic-ros-comm) that allows attackers to cause a denial of service and possibly execute arbitrary code via an IP address with a long hostname.
What is the severity of CVE-2019-13566?
The severity of CVE-2019-13566 is ranked as critical with a CVSS score of 9.8.
How does CVE-2019-13566 impact ROS?
CVE-2019-13566 in ROS can lead to a denial of service and potential execution of arbitrary code.
How can I fix CVE-2019-13566?
To fix CVE-2019-13566, it is recommended to update the affected ROS communications-related packages to a version that includes the necessary security patches.
What are the references for CVE-2019-13566?
You can find more information about CVE-2019-13566 at the following references: - https://github.com/ros/ros_comm/issues/1735 - https://github.com/ros/ros_comm/issues/1752 - https://github.com/ros/ros_comm/pull/1771