7.5

CVE-2024-44854

Exploit
Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference via the component smoothPlan().
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
OpenroboticsRobot Operating System Version2 Updatehumble
OpenroboticsRobot Operating System Version2 Updateiron
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.56% 0.418
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
134c704f-9b21-4f2e-91b3-4a467353bcc0 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE-476 NULL Pointer Dereference

The product dereferences a pointer that it expects to be valid but is NULL.

https://github.com/GoesM/ROS-CVE-CNVDs
Third Party Advisory
https://github.com/ros-navigation/navigation2/issues/4538
Exploit
Issue Tracking
https://github.com/ros-navigation/navigation2/pull/4544
Third Party Advisory