DDS supported products
2667Warning Date
Severity Level
Warning Number
Target Sector
2 February, 2022
● High
2022-4323
All
The following implementations the Data Distribution Service (DDS)) are affected:
- Eclipse CycloneDDS:
- All versions prior to 0.8.0
- eProsima Fast DDS:
- All versions prior to 2.4.0 (#2269)
- GurumNetworks GurumDDS:
- All versions
- Object Computing, Inc. (OCI) OpenDDS:
- All versions prior to 3.18.1
- Real-Time Innovations (RTI) Connext DDS Professional and Connext DDS Secure:
- Versions 4.2x to 6.1.0
- RTI Connext DDS Micro:
- Versions 3.0.0 and later
- TwinOaks Computing CoreDX DDS:
- All versions prior to 5.9.1
An attacker could exploit these vulnerabilities by doing the following:
- Executing arbitrary code
- Denial-of-service
- Buffer overflow
- Information exposure
The CERT team encourages users to review the security advisory of each product and apply the necessary updates:
- Eclipse:
- eProsima:
- OCI:
- RTI:
- Twin Oaks Computing:
- Gurum Network did not announce any patch yet, for more information: