Executive brief
RTI Connext Professional is middleware that enables communication between distributed applications and systems. An incorrect calculation vulnerability in its core libraries could be exploited to abuse existing functionality, potentially compromising the reliability or integrity of systems that depend on the middleware for critical communications.
Technical details
An incorrect calculation vulnerability exists in the Core Libraries component of RTI Connext Professional across multiple major versions. The vulnerability allows abuse of existing functionality through a calculation defect. The issue affects versions 7.4.0–7.7.0.0, 7.0.0–7.3.1.5, and earlier branches (6.x, 5.x, 4.x), with patches available in subsequent minor releases.
Affected products
- RTI Connext Professional 7.4.0 before 7.7.0.1, 7.0.0 before 7.3.1.6, 6.1.0 before 6.1.x, 6.0.0 before 6.0.x, 5.3.0 before 5.3.x, 5.2.0 before 5.2.x, 4.1x before 5.1.x
Timeline
- 2026-09-22: disclosed