First published: Sun Aug 18 2019(Updated: )
The Access Control plugin in eProsima Fast RTPS through 1.9.0 does not check partition permissions from remote participant connections, which can lead to policy bypass for a secure Data Distribution Service (DDS) partition.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Eprosima Fast-rtps | <=1.9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2019-15136.
The severity of CVE-2019-15136 is high with a CVSS score of 7.5.
Eprosima Fast-RTPS version 1.9.0 is affected by CVE-2019-15136.
CVE-2019-15136 allows policy bypass for a secure Data Distribution Service (DDS) partition.
Yes, a fix is available for CVE-2019-15136. Please refer to the provided references for more information.