GHSA-2wvf-qgpv-j3rgHighCVSS 8.2

MOOS core-moos through 10.4.0 contains a buffer over-read vulnerability in CMOOSCommPkt where a...

Published
September 4, 2026
Last Modified
September 4, 2026

🔗 CVE IDs covered (1)

📋 Description

MOOS core-moos through 10.4.0 contains a buffer over-read vulnerability in CMOOSCommPkt where a four-byte packet triggers out-of-bounds memory access during deserialization. Attackers can open a TCP connection to the MOOSDB port and send a crafted short packet to read memory before authentication.

🔗 References (7)