Denial of Service Vulnerability in MOOS-IvP pRealm
CVE-2026-85447
8.7HIGH
What is CVE-2026-85447?
The pRealm component of MOOS-IvP, up to version 24.8.1, is vulnerable due to its acceptance of unbounded REALMCAST_REQ subscriptions. This flaw allows attackers to create long-lived subscriptions with a large number of variables, leading to sustained excessive output generation. Consequently, these unvalidated subscriptions can exhaust system resources, potentially resulting in service interruptions or a denial of service.
Affected Version(s)
moos-ivp 0 <= 24.8.1
