OCI OpenDDS Secure Amplification
21Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 8.6epss 2.1%
exploitation probability
2.1%top 21% of all CVEs
observed exploitation
nono source reports it
In short
OpenDDS versions before 3.18.1 can be exploited by attackers sending specially crafted packets that flood target devices with unwanted traffic, causing the system to become unavailable.
Technical detail
A specially crafted packet vulnerability in OCI OpenDDS <3.18.1 enables network-based amplification attacks where remote unauthenticated attackers can flood target devices, resulting in denial-of-service. The attack exploits packet handling mechanisms to generate disproportionate outbound traffic.
Summary generated and translated by AI from the official description.
OCI OpenDDS versions prior to 3.18.1 are vulnerable when an attacker sends a specially crafted packet to flood target devices with unwanted traffic, which may result in a denial-of-service condition.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H
Affected products
OCI · OpenDDS