CVE-2024-38922 | Open Robotics ROS2/Nav2 Message /initialpose nav2_amcl heap-based overflow (Issue 4307)
A vulnerability was found in Open Robotics ROS2 and Nav2. It has been declared as critical. This vulnerability affects the function nav2_amcl of the file /initialpose of the component Message Handler. The manipulation leads to heap-based buffer overflow.
This vulnerability was named CVE-2024-38922. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to apply a patch to fix this issue.