#VU125731 Uncontrolled Memory Allocation in Fast DDS - CVE-2025-64098
Published: April 9, 2026
Fast DDS
eProsima
Description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to memory allocation with excessive size value in CDRMessage::readOctetVector when parsing a manipulated DATA submessage in an SPDP packet. A remote attacker can send a specially crafted network packet to cause a denial of service.
Only deployments with DDS Security enabled are vulnerable.