CVE-2026-2394

Buffer Over-read vulnerability in RTI Connext Professional (Core Libraries) allows Overread Buffers.This issue affects Connext Professional: from 7.4.0 before 7.7.0, from 7.0.0 before 7.3.1.1, from 6.1.0 before 6.1.*, from 6.0.0 before 6.0.*, from 5.3.0 before 5.3.*, from 4.3x before 5.2.*.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:rti:connext_professional:*:*:*:*:*:*:*:*
cpe:2.3:a:rti:connext_professional:*:*:*:*:*:*:*:*
cpe:2.3:a:rti:connext_professional:*:*:*:*:*:*:*:*
cpe:2.3:a:rti:connext_professional:*:*:*:*:*:*:*:*
cpe:2.3:a:rti:connext_professional:*:*:*:*:*:*:*:*
cpe:2.3:a:rti:connext_professional:*:*:*:*:*:*:*:*

History

14 Apr 2026, 18:00

Type Values Removed Values Added
CWE CWE-125
Summary
  • (es) Vulnerabilidad de lectura excesiva de búfer en RTI Connext Professional (Core Libraries) permite la lectura excesiva de búferes. Este problema afecta a Connext Professional: desde 7.4.0 antes de 7.7.0, desde 7.0.0 antes de 7.3.1.1, desde 6.1.0 antes de 6.1.*, desde 6.0.0 antes de 6.0.*, desde 5.3.0 antes de 5.3.*, desde 4.3x antes de 5.2.*.
References () https://www.rti.com/vulnerabilities/#cve-2026-2394 - () https://www.rti.com/vulnerabilities/#cve-2026-2394 - Vendor Advisory
First Time Rti connext Professional
Rti
CPE cpe:2.3:a:rti:connext_professional:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5

01 Apr 2026, 01:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-04-01 01:16

Updated : 2026-04-14 18:00


NVD link : CVE-2026-2394

Mitre link : CVE-2026-2394

CVE.ORG link : CVE-2026-2394


JSON object : View

Products Affected

rti

  • connext_professional
CWE
CWE-126

Buffer Over-read

CWE-125

Out-of-bounds Read