CVE-2024-52060

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional (Routing Service, Recording Service, Queuing Service, Observability Collector Service, Cloud Discovery Service) allows Buffer Overflow via Environment Variables.This issue affects Connext Professional: from 7.0.0 before 7.3.0.5, from 6.1.0 before 6.1.2.21, from 6.0.0 before 6.0.*, from 5.3.0 before 5.3.1.45.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:rti:connext_professional:*:*:*:*:*:*:*:*
cpe:2.3:a:rti:connext_professional:*:*:*:*:*:*:*:*
cpe:2.3:a:rti:connext_professional:*:*:*:*:*:*:*:*
cpe:2.3:a:rti:connext_professional:*:*:*:*:*:*:*:*

History

02 Oct 2025, 13:36

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
CPE cpe:2.3:a:rti:connext_professional:*:*:*:*:*:*:*:*
References () https://www.rti.com/vulnerabilities/#cve-2024-52060 - () https://www.rti.com/vulnerabilities/#cve-2024-52060 - Vendor Advisory
First Time Rti connext Professional
Rti

13 Dec 2024, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-13 11:15

Updated : 2025-10-02 13:36


NVD link : CVE-2024-52060

Mitre link : CVE-2024-52060

CVE.ORG link : CVE-2024-52060


JSON object : View

Products Affected

rti

  • connext_professional
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')