First published: Sun Feb 11 2024(Updated: )
In OpenDDS through 3.27, there is a segmentation fault for a DataWriter with a large value of resource_limits.max_samples. NOTE: the vendor's position is that the product is not designed to handle a max_samples value that is too large for the amount of memory on the system.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Objectcomputing Opendds | <=3.27 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-52427 has a high severity due to the potential for a segmentation fault in the OpenDDS software.
To mitigate CVE-2023-52427, ensure that the resource_limits.max_samples value is set appropriately to avoid exceeding system memory limits.
CVE-2023-52427 affects OpenDDS versions up to and including 3.27.
The consequence of CVE-2023-52427 is a segmentation fault that can lead to application crashes.
Yes, you can work around CVE-2023-52427 by configuring a lower max_samples value within the resource limits.