CRITICAL🇵🇱 Wersja polska

CVE-2024-41647

CVSS 9.8v3.1pub. 2024-12-06upd. 2024-12-13

Insecure Permissions vulnerability in Open Robotics Robotic Operating System 2 ROS2 navigation2 v.humble allows an attacker to execute arbitrary code via a crafted script to the nav2_mppi_controller.

🤖 AI Analysis
How it works

The vulnerability stems from improperly configured permissions (CWE-732) in the nav2_mppi_controller component of the ROS2 navigation2 system. An attacker can upload a specially crafted script that will be executed by the vulnerable component without proper permission verification or requester identity authentication. The lack of authentication requirement (PR:N, UI:N) means that the attack can be conducted remotely over the network without any user interaction.

Impact

Successful exploitation of the vulnerability allows an attacker to remotely execute arbitrary code (RCE) on the target system, which may lead to complete takeover of the robotic platform, loss of data confidentiality and integrity, and disruption of service availability.

Mitigation & patch

Patches available from the manufacturer should be applied according to the references. Details of the fix are available in the project repository at https://github.com/ros-navigation/navigation2/pull/4463. Additionally, it is recommended to isolate ROS2 communication interfaces from public networks, use firewalls, and restrict network access to ROS2 nodes exclusively to trusted hosts.

Who is affected

Open Robotics Robot Operating System 2 (ROS2) navigation2, humble version — nav2_mppi_controller component

Analysis generated by Claude AI (Anthropic) based on NVD data. Always verify with vendor.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
  • Openrobotics Robot Operating System

    APP
    Openrobotics
    2
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
RCE
CWE
References

Related vulnerabilities

CVE-2024-38924CRITICAL9.8PL ✓same product

Use-after-free w ROS2 Nav2 humble — zdalny exploit przez nav2_amcl

CVE-2024-38922CRITICAL9.8PL ✓same product

Heap overflow w procesie nav2_amcl systemu ROS2 Nav2

CVE-2024-38921CRITICAL9.8PL ✓same product

Use-after-free w ROS2 Nav2 — zdalny atak przez parametr /amcl z_rand

CVE-2024-38923CRITICAL9.8PL ✓same product

Use-after-free w ROS2 Nav2 humble poprzez proces nav2_amcl

CVE-2024-38925CRITICAL9.8PL ✓same product

Use-after-free w ROS2 Nav2 — zdalny atak przez zmianę parametru AMCL