Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

ROS 2 Trajectory topic vulnerable to DoS #100

Closed
aliasbot opened this issue Mar 29, 2019 · 3 comments
Closed

ROS 2 Trajectory topic vulnerable to DoS #100

aliasbot opened this issue Mar 29, 2019 · 3 comments

Comments

@aliasbot
Copy link
Collaborator

@aliasbot aliasbot commented Mar 29, 2019

{
    "id": 100,
    "title": "ROS 2 Trajectory topic vulnerable to DoS",
    "type": "vulnerability",
    "description": "Trajectory messages sent to the /trajectory topic of the H-ROS SoM cause an unrecoverable failure on the ROS node that can only be fixed by a system restart.",
    "cwe": "CWE-Denial of Service (CWE-400)",
    "cve": "None",
    "keywords": [
        "malformed",
        "robot",
        "robot: MARA",
        "severity: medium",
        "vendor: Acutronic Robotics",
        "vulnerability"
    ],
    "system": "MARA",
    "vendor": "Acutronic Robotics",
    "severity": {
        "rvss-score": "None",
        "rvss-vector": "RVSS:1.0/AV:IN/AC:L/PR:N/UI:N/Y:Z/S:U/C:N/I:N/A:H/H:N",
        "severity-description": "",
        "cvss-score": 0,
        "cvss-vector": ""
    },
    "links": [
        "https://github.com/aliasrobotics/RVD/issues/100"
    ],
    "flaw": {
        "phase": "unknown",
        "specificity": "N/A",
        "architectural-location": "N/A",
        "application": "N/A",
        "subsystem": "N/A",
        "package": "N/A",
        "languages": "None",
        "date-detected": "2019-02-10",
        "detected-by": "",
        "detected-by-method": "N/A",
        "date-reported": "2019-02-10",
        "reported-by": "",
        "reported-by-relationship": "N/A",
        "issue": "https://github.com/aliasrobotics/RVD/issues/100",
        "reproducibility": "",
        "trace": null,
        "reproduction": "",
        "reproduction-image": ""
    },
    "exploitation": {
        "description": "",
        "exploitation-image": "",
        "exploitation-vector": ""
    },
    "mitigation": {
        "description": "",
        "pull-request": ""
    }
}
@github-actions
Copy link

@github-actions github-actions bot commented Oct 27, 2019

Feedback (automatically generated):

  • FIXME: Flaw not identified as a vulnerability, weakness or exposure. Have you included # Vulnerability (or Weakness or Exposure) report at the top of the ticket?, see Vulnerability report template for more information or review other tickets to get inspiration

Please review the feedback above. Once addressed, either request the removal of the malformed label to trigger another automatic review.

@github-actions
Copy link

@github-actions github-actions bot commented Oct 29, 2019

Feedback (automatically generated):

  • FIXME: Robot or Robot component not present in summary table or invalid, see Vulnerability report template for more information or review other tickets and get inspiration

Please review the feedback above. Once addressed, either request the removal of the malformed label to trigger another automatic review.

@vmayoral
Copy link
Member

@vmayoral vmayoral commented Nov 27, 2019

  • DUPLICATE: Tagging this ticket as duplicate. Referencing to #99

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Linked pull requests

Successfully merging a pull request may close this issue.

None yet
2 participants