PT-2026-85298 · Moos Ivp · Pmarineviewer
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
MOOS-IvP pMarineViewer versions prior to 24.8.2
Description
An issue exists where the software fails to limit the number of tracked node identities received from
NODE REPORT messages. An unauthenticated attacker can publish crafted NODE REPORT data containing an unbounded number of distinct node names, leading to memory exhaustion and causing the operator display to stall.Recommendations
Update MOOS-IvP pMarineViewer to version 24.8.2 or later.
Fix
Allocation of Resources Without Limits
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Pmarineviewer