Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitrary code via the dyn_param_handler_ component.
The error results from improperly configured permissions in the dyn_param_handler_ component, which is responsible for dynamic parameter handling in the ROS2 navigation system. An attacker can send a specially crafted request to this component over the network, exploiting the lack of proper access permission verification. As a result, arbitrary code execution is possible in the context of the robotic system's navigation process.
An attacker can gain full control over the vulnerable system through remote code execution (RCE), which in a robotic environment can result in takeover of a physical device, data theft, or disruption of the navigation system.
Apply patches available from the vendor according to references — the fix is being processed in the navigation2 repository (pull request #4521). It is recommended to monitor the GitHub repository ros-navigation/navigation2 and update to a version containing the fix immediately after its release. Until the patch is deployed, restrict network access to ROS2 interfaces only to trusted hosts.
Open Robotics Robot Operating System 2 (ROS2) navigation2 version humble
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HOpenrobotics Robot Operating System
APPOpenrobotics2
Related vulnerabilities
Use-after-free w ROS2 Nav2 humble — zdalny exploit przez nav2_amcl
Heap overflow w procesie nav2_amcl systemu ROS2 Nav2
Use-after-free w ROS2 Nav2 — zdalny atak przez parametr /amcl z_rand
Use-after-free w ROS2 Nav2 humble poprzez proces nav2_amcl
Use-after-free w ROS2 Nav2 — zdalny atak przez zmianę parametru AMCL