VendorsEclipsecyclone_data_distribution_serviceall versions
Vulnerabilities

Eclipse Cyclone Data Distribution Service (Cyclone DDS)

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2025-67109
Improper verification of the time certificate in Eclipse Cyclone DDS before v0.10.5 allows attackers to bypass certificate checks and execute commands with System privileges.
Published 2025-12-23 · Modified
10.0EPSS 0.003
CVE-2024-10838
Integer Underflow in DDS_Security_Deserialize_ methods may lead to OOB read
Published 2025-03-12 · Analyzed
9.1EPSS 0.009
CVE-2020-18734
A stack buffer overflow in /ddsi/q_bitset.h of Eclipse IOT Cyclone DDS Project v0.1.0 causes the DDS subscriber server to crash.
Published 2021-08-23 · Modified
7.5EPSS 0.019
CVE-2020-18735
A heap buffer overflow in /src/dds_stream.c of Eclipse IOT Cyclone DDS Project v0.1.0 causes the DDS subscriber server to crash.
Published 2021-08-23 · Modified
7.5EPSS 0.019