CVE-2026-18457: Heap-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Buffers.
Published Sep 22, 2026
·Updated
Heap-based Buffer Overflow vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Buffers. This issue affects Connext Professional: from 7.4.0 before 7.7.0.1, from 7.0.0 before 7.3.1.6, from 6.1.0 before 6.1., from 6.0.0 before 6.0., from 5.3.0 before 5.3., from 5.2.3 before 5.2..
Affected Software
1 affected component
RTI Connext Professional (Core Libraries)>=7.4.0<7.7.0.1, >=7.0.0<7.3.1.6, >=6.1.0<6.1.*, >=6.0.0<6.0.*, >=5.3.0<5.3.*, >=5.2.3<5.2.*
Event History
Sep 22, 2026
CVE Published
via MITRE·05:50 PM
Data Sourced
via MITRE·05:50 PM
DescriptionWeakness
Data Sourced
via NVD·06:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Which 7.x deployments fall within the reported affected ranges?
The issue affects Connext Professional versions from 7.4.0 up to, but not including, 7.7.0.1, and versions from 7.0.0 up to, but not including, 7.3.1.6.
2
Are older Connext Professional release branches included?
Yes. The reported affected ranges also include versions from 6.1.0 before 6.1.*, from 6.0.0 before 6.0.*, from 5.3.0 before 5.3.*, and from 5.2.3 before 5.2.*. The provided data does not specify exact fixed releases for those branches.