VendorseProsimafast_ddsany version
Vulnerabilities

eProsima Fast DDS any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

25CVEs
CVE-2023-50716
Invalid DATA_FRAG Submessage causes a bad-free error
Published 2024-03-06 · Analyzed
9.8EPSS 0.007
CVE-2025-62799
FastDDS's heap buffer overflow in RTPS DATA_FRAG enables unauthenticated DoS (potential RCE)
Published 2026-02-03 · Analyzed
9.8EPSS 0.005
CVE-2024-28231
Manipulated DATA Submessage causes a heap-buffer-overflow error
Published 2024-03-20 · Analyzed
9.6EPSS 0.009
CVE-2023-50257
Disconnect Vulnerability in RTPS Packets Used by SROS2
Published 2024-02-19 · Analyzed
9.6EPSS 0.005
CVE-2021-38425
eProsima Fast DDS Network Amplification
Published 2022-05-05 · Modified
9.1EPSS 0.052
CVE-2023-42459
Malformed DATA submessage leads to bad-free error in Fast-DDS
Published 2023-10-16 · Analyzed
8.6EPSS 0.008
CVE-2025-62600
eprosima Fast DDS affected by Out-of-Memory in readBinaryPropertySeq via Manipulated DATA Submessage when DDS Security is enabled
Published 2026-02-03 · Modified
8.6EPSS 0.004
CVE-2025-62599
eprosima Fast DDS affected by Out-of-Memory in readPropertySeq via Manipulated DATA Submessage when DDS Security is enabled
Published 2026-02-03 · Modified
8.6EPSS 0.004
CVE-2023-39947
Another heap overflow in push_back_helper
Published 2023-08-11 · Modified
8.2EPSS 0.010
CVE-2023-39945
Malformed serialized data in a data submessage leads to unhandled exception
Published 2023-08-11 · Modified
8.2EPSS 0.009
CVE-2023-39946
Heap overflow in push_back_helper due to a CDR message
Published 2023-08-11 · Modified
8.2EPSS 0.009
CVE-2024-30259
FastDDS heap buffer overflow when publisher sends malformed packet
Published 2024-05-13 · Analyzed
8.2EPSS 0.009
CVE-2024-30258
FastDDS crash when publisher send malformed packet
Published 2024-05-13 · Analyzed
8.2EPSS 0.008
CVE-2023-39534
Malformed GAP submessage triggers assertion failure
Published 2023-08-11 · Modified
7.5EPSS 0.010
CVE-2023-39949
Improper validation of sequence numbers leading to remotely reachable assertion failure
Published 2023-08-11 · Modified
7.5EPSS 0.010
CVE-2023-39948
Uncaught fastcdr exception (Unexpected CDR type received) crashing fastdds
Published 2023-08-11 · Modified
7.5EPSS 0.010
CVE-2025-64438
Fast-DDS: Unbounded GAP range triggers OOM DoS under RELIABLE QoS
Published 2026-02-03 · Analyzed
7.5EPSS 0.006
CVE-2025-62601
FastDDS has heap buffer overflow in readString via Manipulated DATA Submessage when DDS Security is enabled
Published 2026-02-03 · Analyzed
7.5EPSS 0.006
CVE-2025-62603
FastDDS has Out-of-memory while parsing GenericMessage when DDS Security is enabled
Published 2026-02-03 · Analyzed
7.5EPSS 0.005
CVE-2025-62602
FastDDS has heap buffer overflow in readData via Manipulated DATA Submessage when DDS Security is enabled
Published 2026-02-03 · Analyzed
7.5EPSS 0.005
CVE-2025-63829
eProsima Fast-DDS v3.3 and before has an infinite loop vulnerability caused by integer overflow in the Time_t:: fraction() function.
Published 2025-11-18 · Analyzed
7.5EPSS 0.003
CVE-2024-30916
An issue was discovered in eProsima FastDDS v.2.14.0 and before, allows a local attacker to cause a denial of service (DoS) and obtain sensitive information via a crafted max_samples parameter in DurabilityService QoS component.
Published 2024-04-11 · Modified
7.1EPSS 0.002
CVE-2025-24807
Fast DDS does not verify Permissions CA
Published 2025-02-11 · Analyzed
7.1EPSS 0.002
CVE-2025-64098
FastDDS has Out-of-memory in readOctetVector via Manipulated DATA Submessage when DDS Security is enabled
Published 2026-02-03 · Analyzed
5.9EPSS 0.005
CVE-2024-30917
An issue was discovered in eProsima FastDDS v.2.14.0 and before, allows a local attacker to cause a denial of service (DoS) and obtain sensitive information via a crafted history_depth parameter in DurabilityService QoS component.
Published 2024-04-11 · Analyzed
5.5EPSS 0.002