Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-85442

HIGH NVD
CVSS Score 7.5
Severity HIGH
Published Sep 03, 2026
Vendor unknown

Description

MOOS core-moos through 10.4.0 fails to validate packet length declarations in CMOOSCommPkt::OnBytesWritten(), allowing unauthenticated attackers to trigger unbounded buffer allocation by sending crafted wire packets. Attackers can send packets with large declared lengths to exhaust server memory and cause denial of service before client authentication completes.

References