Vulnerabilities > Openrobotics > Robot Operating System > High

DATE CVE VULNERABILITY TITLE RISK
2024-12-06 CVE-2024-44853 NULL Pointer Dereference vulnerability in Openrobotics Robot Operating System 2
Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference via the component computeControl().
network
low complexity
openrobotics CWE-476
7.5
2024-12-06 CVE-2024-44854 NULL Pointer Dereference vulnerability in Openrobotics Robot Operating System 2
Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference via the component smoothPlan().
network
low complexity
openrobotics CWE-476
7.5
2024-12-06 CVE-2024-44855 NULL Pointer Dereference vulnerability in Openrobotics Robot Operating System 2
Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference via the component nav2_navfn_planner().
network
low complexity
openrobotics CWE-476
7.5
2024-12-06 CVE-2024-44856 NULL Pointer Dereference vulnerability in Openrobotics Robot Operating System 2
Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble was discovered to contain a NULL pointer dereference via the component nav2_smac_planner().
network
low complexity
openrobotics CWE-476
7.5
2024-12-05 CVE-2024-30961 Unspecified vulnerability in Openrobotics Robot Operating System 2
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 (ROS2) navigation2- ROS2-humble and navigation 2-humble allows a local attacker to execute arbitrary code via the error-thrown mechanism in nav2_bt_navigator.
local
low complexity
openrobotics
7.8
2024-12-05 CVE-2024-30962 Classic Buffer Overflow vulnerability in Openrobotics Robot Operating System 2
Buffer Overflow vulnerability in Open Robotics Robotic Operating System 2 (ROS2) navigation2- ROS2-humble and navigation 2-humble allows a local attacker to execute arbitrary code via the nav2_amcl process
local
low complexity
openrobotics CWE-120
7.8
2020-08-20 CVE-2020-10289 Deserialization of Untrusted Data vulnerability in Openrobotics Robot Operating System
Use of unsafe yaml load.
network
low complexity
openrobotics CWE-502
8.8