Description
MOOS core-moos through 10.4.0 contains a buffer over-read vulnerability in CMOOSCommPkt where a four-byte packet triggers out-of-bounds memory access during deserialization. Attackers can open a TCP connection to the MOOSDB port and send a crafted short packet to read memory before authentication.
Published: 2026-09-03
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Information Disclosure
Action: Immediate Patch
AI Analysis

Impact

MOOS core‑moos versions up to 10.4.0 contain a buffer over‑read in the CMOOSCommPkt module that allows an unauthenticated attacker to trigger out‑of‑bounds memory reads by sending a short four‑byte packet to the MOOSDB port during deserialization. This flaw can expose arbitrary memory contents before the connection is authenticated, potentially leaking sensitive data. The weakness is a classic CWE‑125 read outside bounds.

Affected Systems

The affected product is themoos core‑moos, versions ranging from the initial release through 10.4.0. Any installation using these releases without an upgrade is susceptible.

Risk and Exploitability

The CVSS score of 8.8 classifies the issue as high severity. Although no EPSS value is available, the lack of a KEV listing does not diminish the risk of remote exploitation via an open TCP port. External attackers can initiate a connection, send the crafted packet, and read memory without authentication, indicating a simple remote attack path that requires no privileged credentials.

Generated by OpenCVE AI on September 3, 2026 at 23:36 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade to a version of themoos core‑moos that contains the MOOSCommPkt patch or newer
  • Restrict inbound traffic to the MOOSDB port so only trusted IP addresses can connect
  • Monitor logs for anomalous short packets or repeated memory read attempts

Generated by OpenCVE AI on September 3, 2026 at 23:36 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 04 Sep 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 04 Sep 2026 15:45:00 +0000

Type Values Removed Values Added
First Time appeared Themoos
Themoos core-moos
Vendors & Products Themoos
Themoos core-moos

Thu, 03 Sep 2026 22:45:00 +0000

Type Values Removed Values Added
Description MOOS core-moos through 10.4.0 contains a buffer over-read vulnerability in CMOOSCommPkt where a four-byte packet triggers out-of-bounds memory access during deserialization. Attackers can open a TCP connection to the MOOSDB port and send a crafted short packet to read memory before authentication.
Title MOOS core-moos through 10.4.0 MOOSDB Out-of-Bounds Read via Short Packet
Weaknesses CWE-125
References
Metrics cvssV3_1

{'score': 8.2, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H'}

cvssV4_0

{'score': 8.8, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Themoos Core-moos
cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-09-04T17:18:04.064Z

Reserved: 2026-09-03T19:51:03.019Z

Link: CVE-2026-85455

cve-icon Vulnrichment

Updated: 2026-09-04T17:17:59.618Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-03T23:17:25.803

Modified: 2026-09-08T20:07:17.943

Link: CVE-2026-85455

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-04T15:20:53Z

Weaknesses