CVE-2019-13566 is a critical buffer overflow vulnerability affecting ROS communications-related packages (ros_comm) up to version 1.14.3. Attackers can exploit this by sending an IP address with a long hostname, leading to denial of service and potentially arbitrary code execution. With a CVSS score of 9.8, this vulnerability is easily exploitable over the network without user interaction, posing a significant risk of full compromise. While there are no known public exploits or Metasploit modules, the vulnerability has garnered considerable community discussion, indicating awareness and potential for future exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 1.14.3CPE matchmatch criteria | cpe:2.3:a:ros:ros-comm:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.