VendorsObject Computingopenddsall versions
Vulnerabilities

Object Computing Objectcomputing Opendds

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2021-38445
OCI OpenDDS Secure Improper Handling of Length Parameter Inconsistency
Published 2022-05-05 · Modified
9.8EPSS 0.026
CVE-2021-38429
OCI OpenDDS Secure Network Amplification
Published 2022-05-05 · Modified
9.1EPSS 0.014
CVE-2021-38447
OCI OpenDDS Secure Amplification
Published 2022-05-05 · Modified
8.6EPSS 0.021
CVE-2023-37915
Malformed PID_PROPERTY_LIST parameter in DATA submessage remotely crashes OpenDDS
Published 2023-07-21 · Modified
7.5EPSS 0.009
CVE-2023-23932
Specially crafted RTPS message may cause an OpenDDS application to crash
Published 2023-02-03 · Modified
7.5EPSS 0.007
CVE-2023-52427
In OpenDDS through 3.27, there is a segmentation fault for a DataWriter with a large value of resource_limits.max_samples. NOTE: the vendor's position is that the product is not designed to handle a max_samples value that is too large for the amount of memory on the system.
Published 2024-02-11 · Modified
7.5EPSS 0.006
CVE-2025-67111
An integer overflow in the RTPS protocol implementation of OpenDDS DDS before v3.33.0 allows attackers to cause a Denial of Service (DoS) via a crafted message.
Published 2025-12-23 · Analyzed
7.5EPSS 0.003
CVE-2024-30915
An issue was discovered in OpenDDS commit b1c534032bb62ad4ae32609778de6b8d6c823a66, allows a local attacker to cause a denial of service and obtain sensitive information via the max_samples parameter within the DataReaderQoS component.
Published 2024-04-11 · Analyzed
4.3EPSS 0.005