Vulnerabilities > RTI > Connext Secure > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-05-05 CVE-2021-38487 Insufficient Control of Network Message Volume (Network Amplification) vulnerability in RTI products
RTI Connext DDS Professional, Connext DDS Secure versions 4.2x to 6.1.0, and Connext DDS Micro versions 2.4 and later are vulnerable when an attacker sends a specially crafted packet to flood target devices with unwanted traffic.
network
low complexity
rti CWE-406
critical
9.1
2022-05-05 CVE-2021-38435 Incorrect Calculation of Buffer Size vulnerability in RTI Connext Professional and Connext Secure
RTI Connext DDS Professional and Connext DDS Secure Versions 4.2x to 6.1.0 not correctly calculate the size when allocating the buffer, which may result in a buffer overflow.
network
low complexity
rti CWE-131
critical
9.8