Description
Out-of-bounds Read, Function Call With Incorrect Number of Arguments, Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in RTI Connext Professional (Core Libraries) allows Overread Buffers. This issue affects Connext Professional: from 7.4.0 before 7.7.0.1, from 7.3.0 before 7.3.1.6.
Published: 2026-09-22
Score: 6.8 Medium
EPSS: n/a
KEV: No
Impact: Information Disclosure
Action: Patch
AI Analysis

Impact

The vulnerability is an out‑of‑bounds read in the core libraries of RTI Connext Professional, caused by a function call with incorrect arguments and a type‑confusion bug that permits reading beyond buffer limits. This bug can lead to information disclosure or memory corruption when the application processes maliciously crafted inputs. The weakness aligns with CWE‑125 (Out‑of‑Bounds Read), CWE‑685 (Argument Count Mismatch), and CWE‑843 (Type Confusion).

Affected Systems

RTI Connext Professional from version 7.4.0 up to but not including 7.7.0.1, and from version 7.3.0 up to but not including 7.3.1.6 are affected. All other versions are not listed as vulnerable.

Risk and Exploitability

The CVSS score of 6.8 indicates a medium severity vulnerability. Because the EPSS score is not available and the vulnerability is not listed in the CISA KEV catalog, the known exploitation likelihood is uncertain. The potential attack vector is inferred to be remote, as the bug involves an out‑of‑bounds read triggered by malformed network messages sent to the RTI Connext services. Successful exploitation would expose sensitive data or corrupt memory within the affected process, thereby compromising confidentiality or integrity of the application. The lack of an official exploit in the KEV repository suggests that active exploitation may be limited, but the medium severity and the possibility of remote triggering warrants careful monitoring and timely patching.

Generated by OpenCVE AI on September 22, 2026 at 19:26 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade to RTI Connext Professional version 7.7.0.1 or newer
  • If an upgrade is not possible, isolate the Connext instance behind a firewall and restrict its exposure to trusted networks
  • Monitor system logs for unexpected memory access or crashes that may indicate exploitation attempts

Generated by OpenCVE AI on September 22, 2026 at 19:26 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 22 Sep 2026 19:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 22 Sep 2026 18:00:00 +0000

Type Values Removed Values Added
Description Out-of-bounds Read, Function Call With Incorrect Number of Arguments, Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in RTI Connext Professional (Core Libraries) allows Overread Buffers. This issue affects Connext Professional: from 7.4.0 before 7.7.0.1, from 7.3.0 before 7.3.1.6.
Title Out-of-bounds Read, Function Call With Incorrect Number of Arguments, Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in RTI Connext Professional (Core Libraries) allows Overread Buffers.
First Time appeared Rti
Rti connext Professional
Weaknesses CWE-125
CWE-685
CWE-843
CPEs cpe:2.3:a:rti:connext_professional:*:*:*:*:*:*:*:*
Vendors & Products Rti
Rti connext Professional
References
Metrics cvssV4_0

{'score': 6.8, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Rti Connext Professional
cve-icon MITRE

Status: PUBLISHED

Assigner: RTI

Published:

Updated: 2026-09-22T18:49:15.593Z

Reserved: 2026-06-05T15:43:42.378Z

Link: CVE-2026-11389

cve-icon Vulnrichment

Updated: 2026-09-22T18:49:12.551Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-22T18:17:10.673

Modified: 2026-09-22T19:37:36.747

Link: CVE-2026-11389

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-22T20:15:09Z

Weaknesses
  • CWE-125

    Out-of-bounds Read

  • CWE-685

    Function Call With Incorrect Number of Arguments

  • CWE-843

    Access of Resource Using Incompatible Type ('Type Confusion')