VYPR

Cyclonedds

by Eclipse

CVEs (2)

  • CVE-2021-38443MedMay 5, 2022
    risk 0.43cvss 6.6epss 0.02

    Eclipse CycloneDDS versions prior to 0.8.0 improperly handle invalid structures, which may allow an attacker to write arbitrary values in the XML parser.

  • CVE-2021-38441MedMay 5, 2022
    risk 0.43cvss 6.6epss 0.02

    Eclipse CycloneDDS versions prior to 0.8.0 are vulnerable to a write-what-where condition, which may allow an attacker to write arbitrary values in the XML parser.