📦 Fast Dds

by Eprosima

🔍 What is Fast Dds?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-62799

CRITICAL CVSS 9.8 Feb 3, 2026

A heap buffer overflow vulnerability in Fast DDS allows unauthenticated attackers to send a single malformed RTPS DATA_FRAG packet, causing immediate crashes (DoS) and potentially enabling remote code...

CVE-2023-50716

CRITICAL CVSS 9.6 Mar 6, 2024

CVE-2023-50716 is a use-after-free vulnerability in eProsima Fast DDS that allows remote attackers to crash the Fast-DDS process by sending specially crafted DATA_FRAG packets. This affects all system...

CVE-2023-50257

CRITICAL CVSS 9.6 Feb 19, 2024

This vulnerability in eProsima Fast DDS allows attackers to forcibly disconnect subscribers and prevent new connections by sending unencrypted disconnect packets. It affects systems using Fast DDS wit...

CVE-2025-64438

HIGH CVSS 7.5 Feb 3, 2026

CVE-2025-64438 is a remotely triggerable denial-of-service vulnerability in Fast DDS that allows unauthenticated attackers to cause out-of-memory conditions by sending specially crafted RTPS GAP subme...

CVE-2025-62601

HIGH CVSS 7.5 Feb 3, 2026

A heap buffer overflow vulnerability in Fast DDS allows remote attackers to terminate the Fast-DDS process by sending specially crafted SPDP packets when security mode is enabled. This affects all Fas...

CVE-2025-62602

HIGH CVSS 7.5 Feb 3, 2026

This vulnerability in Fast DDS allows remote attackers to cause denial-of-service by sending specially crafted SPDP packets with manipulated DATA Submessage fields. When security mode is enabled, tamp...

CVE-2025-62603

HIGH CVSS 7.5 Feb 3, 2026

Fast DDS versions prior to 3.4.1, 3.3.1, and 2.6.11 contain a vulnerability where malicious ParticipantGenericMessage packets can trigger excessive memory allocation during CDR parsing, leading to out...

CVE-2025-62600

HIGH CVSS 7.5 Feb 3, 2026

This vulnerability in Fast DDS allows remote attackers to cause a denial-of-service (DoS) by sending specially crafted SPDP packets with modified DATA Submessage fields. When security mode is enabled,...

CVE-2025-62599

HIGH CVSS 7.5 Feb 3, 2026

This vulnerability in Fast DDS allows remote attackers to cause a denial of service by triggering an out-of-memory condition. When security mode is enabled, tampering with specific fields in SPDP pack...

CVE-2025-63829

HIGH CVSS 7.5 Nov 18, 2025

CVE-2025-63829 is an integer overflow vulnerability in eProsima Fast-DDS that causes an infinite loop in the Time_t::fraction() function. This allows attackers to cause denial of service by crashing o...

CVE-2025-24807

HIGH CVSS 7.1 Feb 11, 2025

This vulnerability in eprosima Fast DDS allows expired Permissions Certificate Authorities (PermissionsCA) to be accepted as valid due to insufficient validation of certificate chains and expiration d...

CVE-2024-30259

HIGH CVSS 8.2 May 14, 2024

CVE-2024-30259 is a heap buffer overflow vulnerability in FastDDS that allows remote attackers to crash Fast-DDS processes by sending malformed RTPS packets. This can lead to denial of service attacks...

CVE-2024-30916

HIGH CVSS 7.1 Apr 11, 2024

A vulnerability in eProsima FastDDS versions 2.14.0 and earlier allows local attackers to cause denial of service and potentially leak sensitive information by manipulating the max_samples parameter i...

CVE-2023-39534

HIGH CVSS 7.5 Aug 11, 2023

A vulnerability in eprosima Fast DDS allows remote attackers to cause denial of service by sending a specially crafted GAP submessage that triggers an assertion failure, crashing the FastDDS service. ...

CVE-2023-39948

HIGH CVSS 7.5 Aug 11, 2023

This vulnerability in eprosima Fast DDS allows remote attackers to crash any Fast DDS process by triggering an uncaught BadParamException. It affects all systems running vulnerable versions of Fast DD...

CVE-2023-39946

HIGH CVSS 8.2 Aug 11, 2023

CVE-2023-39946 is a heap overflow vulnerability in eprosima Fast DDS that allows remote attackers to crash any Fast-DDS process by sending a specially crafted CDR string to the discovery multicast por...

CVE-2021-38425

HIGH CVSS 7.5 May 5, 2022

CVE-2021-38425 is a vulnerability in eProsima Fast DDS that allows attackers to send specially crafted packets to flood target devices with unwanted traffic. This can cause denial-of-service condition...

CVE-2025-64098

MEDIUM CVSS 5.9 Feb 3, 2026

This vulnerability in Fast DDS allows remote attackers to cause a denial of service by triggering an out-of-memory condition through specially crafted SPDP packets. When security mode is enabled, tamp...