Executive brief
MOOS core-moos is a lightweight middleware framework used for inter-process communication in robotics and autonomous systems. The MOOSDB message broker fails to properly validate the source identity of messages, allowing authenticated attackers to forge message origins and cancel third-party subscriptions. This could enable attackers to manipulate system behavior, impersonate other components, or disrupt critical robotic operations.
Technical details
The vulnerability exists in MOOSDB message processing where the server does not validate the correspondence between the authenticated connection identity and the source identifier supplied in serialized messages. An authenticated attacker can supply arbitrary source identifiers in MOOSDB messages, causing writes to be attributed to other clients and enabling subscription cancellation on behalf of third parties. The attack requires prior authentication to the MOOSDB server but no additional user interaction. An attacker can forge message origins to impersonate legitimate clients and disrupt peer-to-peer messaging patterns. Patch availability for versions beyond 10.4.0 should be verified with the core-moos project maintainers.
Affected products
- MOOS core-moos through 10.4.0
Timeline
- 2026-09-03: disclosed
- other: CVE-2026-85432 assigned