The Access Control plugin in eProsima Fast RTPS through 1.9.0 does not check partition permissions from remote participant connections, which can lead to policy bypass for a secure Data Distribution Service (DDS) partition.
References
Link Resource
https://arxiv.org/abs/1908.05310 Third Party Advisory
https://github.com/eProsima/Fast-RTPS/issues/443 Patch Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-08-18T15:43:46

Updated: 2019-08-18T15:43:46

Reserved: 2019-08-18T00:00:00


Link: CVE-2019-15136

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-08-18T16:15:10.567

Modified: 2020-08-24T17:37:01.140


Link: CVE-2019-15136

JSON object: View

cve-icon Redhat Information

No data.

CWE