Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

nav2_map_server: detected memory leaks, rcl_lifecycle_regist... #170

Closed
vmayoral opened this issue Sep 12, 2019 · 2 comments
Closed

nav2_map_server: detected memory leaks, rcl_lifecycle_regist... #170

vmayoral opened this issue Sep 12, 2019 · 2 comments
Labels
bug An error, flaw, failure or fault in a computer program or system that causes it to produce an incorr components software Vulnerabilities in purely software robot components (e.g. a the ROS navigation stack) mitigated package: nav2_map_server robot component: navigation2 robot component: ROS2 version: 0.2.4 ROS 2 nav stack version

Comments

@vmayoral
Copy link
Member

vmayoral commented Sep 12, 2019

{
    "id": 170,
    "title": "nav2_map_server: detected memory leaks, rcl_lifecycle_regist...",
    "type": "weakness",
    "description": "Issue detected while running Google Sanitizers.\n\n ",
    "cwe": "CWE-[CWE-401: Missing Release of Memory after Effective Lifetime](https://cwe.mitre.org/data/definitions/401.html)",
    "cve": "None",
    "keywords": [
        "0.2.4",
        "components software",
        "package: nav2_map_server",
        "robot component: ROS2",
        "robot component: navigation2",
        "weakness"
    ],
    "system": "navigation2",
    "vendor": "N/A",
    "severity": {
        "rvss-score": "None",
        "rvss-vector": "N/A",
        "severity-description": "",
        "cvss-score": 0,
        "cvss-vector": ""
    },
    "links": [
        "https://github.com/aliasrobotics/RVD/issues/170"
    ],
    "flaw": {
        "phase": "unknown",
        "specificity": "N/A",
        "architectural-location": "N/A",
        "application": "N/A",
        "subsystem": "N/A",
        "package": "nav2_map_server",
        "languages": "None",
        "date-detected": "Thu, 12 Sep 2019 20:06:31 +0000",
        "detected-by": "",
        "detected-by-method": "N/A",
        "date-reported": "Thu, 12 Sep 2019 20:06:31 +0000",
        "reported-by": "",
        "reported-by-relationship": "N/A",
        "issue": "https://github.com/aliasrobotics/RVD/issues/170",
        "reproducibility": "",
        "trace": null,
        "reproduction": "",
        "reproduction-image": ""
    },
    "exploitation": {
        "description": "",
        "exploitation-image": "",
        "exploitation-vector": ""
    },
    "mitigation": {
        "description": "",
        "pull-request": ""
    }
}
@vmayoral vmayoral added components software Vulnerabilities in purely software robot components (e.g. a the ROS navigation stack) robot component: ROS2 robot component: navigation2 version: 0.2.4 ROS 2 nav stack version bug An error, flaw, failure or fault in a computer program or system that causes it to produce an incorr package: nav2_map_server labels Sep 12, 2019
@vmayoral
Copy link
Member Author

Follows at #333

@github-actions
Copy link

Feedback (automatically generated):

  • FIXME: Flaw not identified as a vulnerability, weakness or exposure. Have you included # Vulnerability (or Weakness or Exposure) report at the top of the ticket?, see Vulnerability report template for more information or review other tickets to get inspiration

Please review the feedback above. Once addressed, either request the removal of the malformed label to trigger another automatic review.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug An error, flaw, failure or fault in a computer program or system that causes it to produce an incorr components software Vulnerabilities in purely software robot components (e.g. a the ROS navigation stack) mitigated package: nav2_map_server robot component: navigation2 robot component: ROS2 version: 0.2.4 ROS 2 nav stack version
Projects
None yet
Development

No branches or pull requests

1 participant