GHSA-wh57-49q6-m5jhCriticalCVSS 9.8
MOOS-IvP uMemWatch through 24.8.1 constructs shell commands from attacker-chosen MOOS client...
🔗 CVE IDs covered (1)
📋 Description
MOOS-IvP uMemWatch through 24.8.1 constructs shell commands from attacker-chosen MOOS client names without sanitization. Attackers can inject shell metacharacters into client names to execute arbitrary commands as the uMemWatch process user through unquoted redirection targets in system calls.
🔗 References (7)
- https://nvd.nist.gov/vuln/detail/CVE-2026-85426
- https://github.com/moos-ivp/moos-ivp/pull/121
- https://github.com/moos-ivp/moos-ivp/commit/0b2bd991b0ca7139b1edcf271473d33e7eccfc20
- https://github.com/moos-ivp/moos-ivp
- https://github.com/moos-ivp/moos-ivp/blob/1de9ae146cd63c209e8c3fd81611a4ed2472971b/ivp/src/uMemWatch/MemWatch.cpp#L182
- https://www.vulncheck.com/advisories/moos-ivp-through-24.8.1-umemwatch-command-injection-via-moos-client-names
- https://github.com/advisories/GHSA-wh57-49q6-m5jh