CVE-2019-15137

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
18/08/2019
Last modified:
24/08/2020

Description

The Access Control plugin in eProsima Fast RTPS through 1.9.0 allows fnmatch pattern matches with topic name strings (instead of the permission expressions themselves), which can lead to unintended connections between participants in a Data Distribution Service (DDS) network.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:eprosima:fast-rtps:*:*:*:*:*:*:*:* 1.9.0 (including)