Description
An issue in EGO-Planner-v2 All versions up to commit 5c99a95880401e2599638d567abc0e240396cb42 allows an attacker to cause a denial of service via the checkCollisionCallback, execFSMCallback, planFromGlobalTraj in ego_replan_fsm.cpp
Published: 2026-09-10
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service
Action: Apply Update
AI Analysis

Impact

The vulnerability in EGO‑Planner‑v2 allows an attacker to trigger the checkCollisionCallback, execFSMCallback, and planFromGlobalTraj functions defined in ego_replan_fsm.cpp. When these callbacks are called, the planner component can become unresponsive or terminate, impairing the availability of the system. The flaw does not grant code execution or privilege escalation.

Affected Systems

The affected software is the open‑source project EGO‑Planner‑v2 hosted on GitHub at https://github.com/ZJU-FAST-Lab up to and including commit 5c99a95880401e2599638d567abc0e240396cb42; the repository and its issue tracker can be found at the provided GitHub URLs CVSS score is 7.5, the EPSS score is less than 1%, and it is not listed in CISA’s KEV catalog, indicating a low likelihood of exploitation but a high impact if triggered; it likely requires local or is purely availability, the overall risk is moderate to high depending on the planner’s criticality to operational workflows.

Risk and Exploitability

The CVSS score of 7.5 signifies high severity, while the EPSS score of less than 1% indicates a very small probability of exploitation. It is not included in the CISA KEV catalog, further suggesting limited real‑world use. Based on the description, it is inferred that the vulnerability requires interaction with the planner’s internal callbacks, likely through a local or privileged context. If an attacker can invoke these callbacks, the planner will deny service, which can be significant for automated vehicle control workflows but does not compromise data confidentiality or integrity. The risk is thus high impact but low likelihood, making it a moderate overall threat. The key weakness is CWE‑400, indicating an unbounded resource allocation or denial of service vulnerability.

Generated by OpenCVE AI on September 21, 2026 at 04:48 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Update the EGO‑Planner‑v2 codebase to a commit newer than 5c99a95880401e240396cb42 where the callback logic has been corrected.
  • If the planner component is behind a firewall or otherwise restrict external access to reduce exposure.
  • Implement runtime safeguards such as timeouts, resource limits, or monitoring to detect and mitigate prolonged or repeated invocations of the vulnerable callbacks.

Generated by OpenCVE AI on September 21, 2026 at 04:48 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 27 Sep 2026 10:45:00 +0000

Type Values Removed Values Added
First Time appeared Zju-fast-lab
Zju-fast-lab ego-planner-v2
Vendors & Products Zju-fast-lab
Zju-fast-lab ego-planner-v2

Mon, 21 Sep 2026 05:15:00 +0000

Type Values Removed Values Added
Title Denial of Service in EGO‑Planner‑v2 via Faulty Callback Execution

Sat, 12 Sep 2026 02:45:00 +0000

Type Values Removed Values Added
Title Denial of Service in EGO‑Planner‑v2 via Faulty Callback Execution

Fri, 11 Sep 2026 17:15:00 +0000

Type Values Removed Values Added
Title Denial of Service via Callback Abuse in EGO-Planner-v2
Weaknesses CWE-770

Fri, 11 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 11 Sep 2026 06:45:00 +0000

Type Values Removed Values Added
Title Denial of Service via Callback Abuse in EGO-Planner-v2
Weaknesses CWE-400
CWE-770

Fri, 11 Sep 2026 05:15:00 +0000

Type Values Removed Values Added
Title Denial of Service via Callback Exhaustion in EGO‑Planner‑v2
Weaknesses CWE-399

Fri, 11 Sep 2026 02:15:00 +0000

Type Values Removed Values Added
Title Denial of Service via Callback Exhaustion in EGO‑Planner‑v2
Weaknesses CWE-399

Thu, 10 Sep 2026 22:00:00 +0000

Type Values Removed Values Added
Description An issue in EGO-Planner-v2 All versions up to commit 5c99a95880401e2599638d567abc0e240396cb42 allows an attacker to cause a denial of service via the checkCollisionCallback, execFSMCallback, planFromGlobalTraj in ego_replan_fsm.cpp
References

Subscriptions

Zju-fast-lab Ego-planner-v2
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-09-11T14:53:57.978Z

Reserved: 2026-08-07T00:00:00.000Z

Link: CVE-2026-71647

cve-icon Vulnrichment

Updated: 2026-09-11T14:53:54.005Z

cve-icon NVD

Status : Deferred

Published: 2026-09-10T22:16:59.190

Modified: 2026-09-22T20:00:03.713

Link: CVE-2026-71647

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-27T10:30:10Z

Weaknesses
  • CWE-400

    Uncontrolled Resource Consumption