CVE-2026-85433: MOOS essential-moos through 10.0.1 pShare Unauthorized Runtime Route Reconfiguration
MOOS essential-moos pShare through 10.0.1 fails to properly authorize PSHARECMD messages, allowing any publisher to reconfigure network routes and listeners at runtime. Attackers can send crafted PSHARECMD messages with cmd=output or cmd=input parameters to open new listeners on arbitrary addresses and redirect or duplicate bus traffic to attacker-controlled destinations.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
MOOS essential-moos pShareto a version that resolves this vulnerability.Fixed in 10.0.1 - Compensating control
Restrict network access to the MOOS essential-moos pShare service so unauthorized publishers cannot send PSHARE_CMD messages that reconfigure listeners/routes at runtime.
Event History
Frequently Asked Questions
Which deployments are affected?
MOOS essential-moos pShare versions through 10.0.1 are affected.
What access does an attacker need?
An attacker only needs to be able to act as a publisher. No privileges or user interaction are required.
What should responders look for when investigating potential exploitation?
Review PSHARE_CMD messages using cmd=output or cmd=input, and inspect the runtime configuration for unexpected listeners, route changes, duplicated traffic, or destinations not under organizational control.