CVE-2020-16124: Ros Ros-Comm

Critical severity, CVSS 9.8. EPSS: 0.9% chance of exploitation in the next 30 days.

Integer Overflow or Wraparound vulnerability in the XML RPC library of OpenRobotics ros_comm communications packages allows unauthenticated network traffic to cause unexpected behavior. This issue affects: OpenRobotics ros_comm communications packages Noetic and prior versions. Fixed in https://github.com/ros/ros_comm/pull/2065.

Affected products

  • Ros Ros-Comm: before 1.15.9 (fixed in 1.15.9)

Published 2020-10-13. Last modified 2026-06-17.