Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 (ROS2) navigation2- ROS2-humble and navigation 2-humble allows a local attacker to execute arbitrary code via the initial_pose_sub thread created by nav2_bt_navigator
Metrics
Affected Vendors & Products
References
History
Fri, 06 Dec 2024 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Open Robotics
Open Robotics nav2 Humble Open Robotics ros2 Humble Open Robotics ros2 Navigation2 |
|
Weaknesses | CWE-94 | |
CPEs | cpe:2.3:o:open_robotics:nav2_humble:*:*:*:*:*:*:*:* cpe:2.3:o:open_robotics:ros2_humble:*:*:*:*:*:*:*:* cpe:2.3:o:open_robotics:ros2_navigation2:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Open Robotics
Open Robotics nav2 Humble Open Robotics ros2 Humble Open Robotics ros2 Navigation2 |
|
Metrics |
cvssV3_1
|
Thu, 05 Dec 2024 23:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 (ROS2) navigation2- ROS2-humble and navigation 2-humble allows a local attacker to execute arbitrary code via the initial_pose_sub thread created by nav2_bt_navigator | |
References |
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-12-05T00:00:00
Updated: 2024-12-06T19:58:12.809Z
Reserved: 2024-03-27T00:00:00
Link: CVE-2024-30964
Vulnrichment
Updated: 2024-12-06T19:58:02.293Z
NVD
Status : Received
Published: 2024-12-05T23:15:05.390
Modified: 2024-12-06T20:15:24.937
Link: CVE-2024-30964
Redhat
No data.