Heap-based Buffer Overflow in RTI Connext Professional Core Libraries
CVE-2026-18457

8.3HIGH

Key Information:

Vendor

Rti

Vendor
CVE Published:
22 September 2026

What is CVE-2026-18457?

The heap-based buffer overflow vulnerability in RTI Connext Professional's Core Libraries presents a critical risk, as improper handling of memory allocations can lead to overflow situations. This issue could potentially allow attackers to manipulate memory, execute arbitrary code, or crash the affected system. Users of versions 7.4.0 to before 7.7.0.1, 7.0.0 to before 7.3.1.6, 6.1.0 to before 6.1., 6.0.0 to before 6.0., 5.3.0 to before 5.3., and 5.2.3 to before 5.2. are advised to update their software to mitigate associated risks.

Affected Version(s)

Connext Professional 7.4.0 < 7.7.0.1

Connext Professional 7.0.0 < 7.3.1.6

Connext Professional 6.1.0 < 6.1.*

References

CVSS V4

Score:
8.3
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.