CVE-2026-52486: OpenDDS OpenDDS vulnerability
Published Sep 8, 2026
·Updated
An issue in OpenDDS 3.33.x allows a local attacker to cause a denial of service via the verify function in the SIgnedDocument module
Affected Software
1 affected component
OpenDDS OpenDDS>=3.33.0<=3.33.x
Event History
Sep 8, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·08:17 PM
Description
Frequently Asked Questions
1
Who can exploit this issue?
An attacker needs local access to a system running an affected OpenDDS 3.33.x installation. The reported impact is denial of service.
2
Which component should be reviewed when assessing exposure?
The issue is associated with the verify function in OpenDDS's SignedDocument module, located under dds/DCPS/security/SSL/SignedDocument.cpp.