PT-2026-85296 · Moos Ivp · Prealm

·

CVE-2026-85447

·

Published

2026-09-03

·

Updated

2026-09-04

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions MOOS-IvP pRealm versions prior to 24.8.2
Description The pRealm component accepts unbounded REALMCAST REQ subscriptions without validating the duration or the limits of the variable list. This allows an attacker to register long-lived pipeways containing numerous variables, forcing pRealm to generate excessive output indefinitely, which leads to the exhaustion of system resources and a resulting denial of service.
Recommendations Update MOOS-IvP pRealm to version 24.8.2 or later.

Fix

DoS

Allocation of Resources Without Limits

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-85447

Affected Products

Prealm