CVE-2024-44854: Null Pointer Dereference
Published Dec 6, 2024
·Updated
Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference via the component smoothPlan().
Affected Software
2 affected components
Openrobotics Robot Operating System=2-humble
Openrobotics Robot Operating System=2-iron
Event History
Dec 6, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-44854?
CVE-2024-44854 is classified as a medium severity vulnerability due to its potential to cause application crashes.
2
How do I fix CVE-2024-44854?
To fix CVE-2024-44854, update your installation of ROS2 navigation2 to the latest version that addresses the NULL pointer dereference in smoothPlan().
3
Which software versions are affected by CVE-2024-44854?
CVE-2024-44854 affects Open Robotics Robot Operating System 2 versions 2-humble and 2-iron.
4
What type of vulnerability is CVE-2024-44854?
CVE-2024-44854 is a NULL pointer dereference vulnerability in the smoothPlan() component of ROS2 navigation2.
5
Can CVE-2024-44854 be exploited remotely?
CVE-2024-44854 does not provide remote exploitation capabilities but could be exploited locally if the affected software is running.