ros2/sros2 on GitHub
tools to generate and distribute keys for SROS 2
CVE History
CVE | Published | CVSS v2 | CVSS v3 |
---|---|---|---|
CVE-2019-19625 | 5.3 MEDIUM | 5 MEDIUM | |
SROS 2 0.8.1 (which provides the tools that generate and distribute keys for Robot Operating System 2 and uses the underlying security plugins of DDS from ROS 2) leaks node information due to a leaky default configuration as indicated in the policy/defaults/dds/governance.xml document. | |||
CVE-2019-19627 | 5.3 MEDIUM | 5 MEDIUM | |
SROS 2 0.8.1 (after CVE-2019-19625 is mitigated) leaks ROS 2 node-related information regardless of the rtps_protection_kind configuration. (SROS2 provides the tools to generate and distribute keys for Robot Operating System 2 and uses the underlying security plugins of DDS from ROS 2.) |