Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitrary code via a crafted script to the nav2__amcl.
Misconfigured permissions in the nav2_amcl component of the ROS2 navigation2 system allow an attacker to deliver a crafted script that is executed in the context of a running node. The attacker can thus inject malicious payload without needing any system privileges. The access control mechanism does not sufficiently restrict operations on scripts or related resources, opening a path to full takeover of the process.
An attacker can execute arbitrary code in the context of a vulnerable ROS2 node, leading to complete compromise of confidentiality, integrity, and availability of the robotic system.
Security patches provided by the vendor should be applied according to references — a fix was proposed in pull request #4521 in the ros-navigation/navigation2 repository on GitHub. It is recommended to monitor the patch status and update to a version containing the patch immediately after its release.
Open Robotics Robot Operating System 2 (ROS2) navigation2, humble version — nav2_amcl component
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HOpenrobotics Robot Operating System
APPOpenrobotics2
Related vulnerabilities
Use-after-free w ROS2 Nav2 humble — zdalny exploit przez nav2_amcl
Heap overflow w procesie nav2_amcl systemu ROS2 Nav2
Use-after-free w ROS2 Nav2 — zdalny atak przez parametr /amcl z_rand
Use-after-free w ROS2 Nav2 humble poprzez proces nav2_amcl
Use-after-free w ROS2 Nav2 — zdalny atak przez zmianę parametru AMCL