CVE-2024-25199: Use After Free
Inappropriate pointer order of mapsub and mapfree(map) (amclnode.cpp) in Open Robotics Robotic Operating Sytstem 2 (ROS2) and Nav2 humble versions leads to a use-after-free.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-25199?
CVE-2024-25199 has a high severity due to its potential for causing use-after-free vulnerabilities in ROS2 and Nav2.
How do I fix CVE-2024-25199?
To fix CVE-2024-25199, users should upgrade to the latest patched versions of ROS2 and Nav2 that address this vulnerability.
Which versions are affected by CVE-2024-25199?
CVE-2024-25199 affects all versions of Open Robotics Robotic Operating System 2 and Nav2 that are at or above the humble version.
What causes CVE-2024-25199?
CVE-2024-25199 is caused by an inappropriate pointer order in the map_sub_ and map_free functions within amcl_node.cpp.
Is CVE-2024-25199 a remote exploit?
CVE-2024-25199 poses a risk that could potentially be exploited remotely, allowing attackers to cause application crashes or execute arbitrary code.