First published: Sun Jan 01 2023(Updated: )
The ntpd_driver component before 1.3.0 and 2.x before 2.2.0 for Robot Operating System (ROS) allows attackers, who control the source code of a different node in the same ROS application, to change a robot's behavior. This occurs because a topic name depends on the attacker-controlled time_ref_topic parameter.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ntpd Driver Project Ntpd Driver | <1.3.0 | |
Ntpd Driver Project Ntpd Driver | >=2.0.0<2.2.0 | |
Openrobotics Robot Operating System | ||
All of | ||
Any of | ||
Ntpd Driver Project Ntpd Driver | <1.3.0 | |
Ntpd Driver Project Ntpd Driver | >=2.0.0<2.2.0 | |
Openrobotics Robot Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.