CVE-2024-38910

Open Robotics Robotic Operating System 2 (ROS2) and Nav2 humble version was discovered to contain a use-after-free in the nav2_amcl process. This vulnerability is triggered via sending a request to change dynamic parameters.
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) Se descubrió que Open Robotics Robotic Operating System 2 (ROS2) y Nav2 humble contenían un error de use-after-free en el proceso nav2_amcl. Esta vulnerabilidad se activa al enviar una solicitud para cambiar parámetros dinámicos.

06 Dec 2024, 20:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CWE CWE-416

05 Dec 2024, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-05 23:15

Updated : 2026-04-15 00:35


NVD link : CVE-2024-38910

Mitre link : CVE-2024-38910

CVE.ORG link : CVE-2024-38910


JSON object : View

Products Affected

No product.

CWE
CWE-416

Use After Free