CVE-2025-67111: Integer Overflow
Published Dec 23, 2025
·Updated
An integer overflow in the RTPS protocol implementation of OpenDDS DDS before v3.33.0 allows attackers to cause a Denial of Service (DoS) via a crafted message.
Affected Software
2 affected components
Object Computing, Inc. OpenDDS<3.33.0
Objectcomputing Opendds<3.33.0
Event History
Dec 23, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-67111?
CVE-2025-67111 is classified as a medium severity vulnerability due to its potential to cause Denial of Service.
2
How do I fix CVE-2025-67111?
To fix CVE-2025-67111, upgrade your OpenDDS DDS installation to version 3.33.0 or later.
3
What type of attack does CVE-2025-67111 facilitate?
CVE-2025-67111 allows attackers to execute a Denial of Service (DoS) attack through a crafted RTPS message.
4
Which versions of OpenDDS are affected by CVE-2025-67111?
CVE-2025-67111 affects OpenDDS versions prior to 3.33.0.
5
Is there a known exploit for CVE-2025-67111?
Yes, there are proofs of concept available that demonstrate the exploitability of CVE-2025-67111.