PatchSiren

OpenDDS CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH OpenDDS CVE published 2026-09-17

CVE-2026-52836

A vulnerability in OpenDDS, a C++ implementation of the Object Management Group (OMG) Data Distribution Service (DDS), allows a network attacker to crash a reachable OpenDDS participant by sending a malformed RTPS UDP submessage. This issue is fixed in version 3.34.0. The vulnerability can be exploited without authentication, prior protocol state, or victim interaction, making it a significant concern for [truncated]