Back to search
CVE-2024-10838
Published: Mar 12, 2025
Modified: Mar 12, 2025
PUBLISHED
Description
An integer underflow during deserialization may allow any unauthenticated user to read out of bounds heap memory. This may result into secret data or pointers revealing the layout of the address space to be included into a deserialized data structure, which may potentially lead to thread crashes or cause denial of service conditions.
| Vendor | Product | Versions |
|---|---|---|
Eclipse Foundation | Eclipse Cyclone DDS | affected 0 - < 0.10.5 |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now