Impact
The flaw occurs in the FastExplorationFSM::optTimerCallback function within the exploration manager module of the RACER system developed by the SYSU STAR Group. An unhandled condition in this callback can cause the application to crash or become unresponsive, resulting in a denial of service to the swarm exploration component. This vulnerability is an instance of CWE‑400: Uncontrolled Resource Consumption. According to the CVE description, an attacker can trigger this behavior to disrupt the availability of the robotic swarm mission until a manual restart or patch is applied.
Affected Systems
The Robotics-STAR-Lab RACER software at commit abcdef1234567890 is affected. No other vendor or product versions are known to be affected at this time.
Risk and Exploitability
Severity metrics are complete: the CVSS score is 7.5. The EPSS score is less than 1% and the vulnerability is not listed in the CISA KEV catalog. The vulnerability can cause the swarm exploration component to crash or hang, disrupting mission‑critical robotic operations. The attack vector is inferred to be remote via the control interface that triggers the timer callback.
OpenCVE Enrichment