#VU125732 Heap-based buffer overflow in Fast DDS - CVE-2025-62601
Published: April 9, 2026
Fast DDS
eProsima
Description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to a heap-based buffer overflow in CDRMessage::readString when parsing a manipulated DATA submessage in an SPDP packet. A remote attacker can send a specially crafted SPDP packet to cause a denial of service.
Only deployments with DDS Security enabled are vulnerable.