CVE-2024-37862: Buffer Overflow
Buffer Overflow vulnerability in Open Robotic Robotic Operating System 2 ROS2 navigation2- ROS2-humble&& navigation2-humble allows a local attacker to execute arbitrary code via a crafted .yaml file to the nav2planner process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-37862?
CVE-2024-37862 is classified as a high severity vulnerability due to its potential for arbitrary code execution.
How do I fix CVE-2024-37862?
To mitigate CVE-2024-37862, update the Open Robotics Robotic Operating System 2 (ROS2) to the latest patched version.
Who is affected by CVE-2024-37862?
Users of the Open Robotics Robotic Operating System 2 (ROS2) navigation2-humble version are affected by CVE-2024-37862.
What type of vulnerability is CVE-2024-37862?
CVE-2024-37862 is a buffer overflow vulnerability that allows local attackers to execute arbitrary code.
What can an attacker do with CVE-2024-37862?
An attacker can leverage CVE-2024-37862 to execute arbitrary code through a crafted .yaml file targeting the nav2_planner process.