CVE-2024-30964
EUVD-2024-2888205.12.2024, 23:15
Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 (ROS2) navigation2- ROS2-humble and navigation 2-humble allows a local attacker to execute arbitrary code via the initial_pose_sub thread created by nav2_bt_navigator
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| open_robotics | ros2_navigation2 | 𝑥 ≤ * | ADP |
| open_robotics | ros2_humble | 𝑥 ≤ * | ADP |
| open_robotics | nav2_humble | 𝑥 ≤ * | ADP |