First published: Thu Dec 05 2024(Updated: )
Buffer Overflow vulnerability in Open Robotics Robotic Operating System 2 (ROS2) navigation2- ROS2-humble and navigation 2-humble allows a local attacker to execute arbitrary code via the nav2_amcl process
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Openrobotics Robot Operating System | =2-humble | |
Openrobotics Robot Operating System | =2-iron |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-30962 is considered a high severity vulnerability due to the potential for arbitrary code execution.
To fix CVE-2024-30962, update to the latest version of Open Robotics Robot Operating System 2, specifically versions 2-humble or 2-iron that include the patch.
CVE-2024-30962 affects users of Open Robotics Robot Operating System 2, specifically the navigation2 package in versions 2-humble and 2-iron.
The attack vector for CVE-2024-30962 is local, requiring access to the nav2_amcl process to exploit the buffer overflow.
The potential impacts of CVE-2024-30962 include execution of arbitrary code, which can lead to system compromise or disruption of robotic operations.