CVE-2024-52066: Potential stack corruption in Routing Service when using a malicious XML configuration document
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional (Routing Service) allows Overflow Variables and Tags.This issue affects Connext Professional: from 7.4.0 before 7.5.0, from 7.0.0 before 7.3.0.5, from 6.1.0 before 6.1.2.21, from 6.0.0 before 6.0.1.40.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-52066?
CVE-2024-52066 is classified as a buffer overflow vulnerability which can lead to potential system compromise.
How do I fix CVE-2024-52066?
To fix CVE-2024-52066, you should upgrade RTI Connext Professional to versions 7.5.0 or later, 7.3.0.5 or later, or 6.1.2.2 or later.
Which versions of RTI Connext Professional are affected by CVE-2024-52066?
CVE-2024-52066 affects RTI Connext Professional versions before 7.5.0, 7.3.0.5, and 6.1.2.2.
What types of vulnerabilities are associated with CVE-2024-52066?
CVE-2024-52066 is associated with buffer overflow vulnerabilities that can result in overflow of variables and tags.
Can CVE-2024-52066 be exploited remotely?
Yes, CVE-2024-52066 can potentially be exploited remotely if the affected software is accessible over a network.