CVE-2020-10289
Last modified
CVE-2020-10289 is a high-severity vulnerability rated 8.8/10 on the CVSS scale. Use of unsafe yaml load. Allows instantiation of arbitrary objects. EPSS estimates a 1.95% chance of exploitation in the next 30 days.
Description
Use of unsafe yaml load. Allows instantiation of arbitrary objects. The flaw itself is caused by an unsafe parsing of YAML values which happens whenever an action message is processed to be sent, and allows for the creation of Python objects. Through this flaw in the ROS core package of actionlib, an attacker with local or remote access can make the ROS Master, execute arbitrary code in Python form. Consider yaml.safe_load() instead. Located first in actionlib/tools/library.py:132. See links for more info on the bug.
Metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Openrobotics | Robot Operating System | All versions |
References
- https://github.com/ros/actionlib/pull/171Patch, Third Party Advisory
- https://github.com/ros/actionlib/pull/171Patch, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2020-10289?
How severe is CVE-2020-10289?
How do I fix CVE-2020-10289?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2020
- CVE-2020-10283The Micro Air Vehicle Link (MAVLink) protocol presents authe…9.8
- CVE-2020-10284No authentication is required to control the robot inside th…9.1
- CVE-2020-10285The authentication implementation on the xArm controller has…9.8
- CVE-2020-10286the main user account has restricted privileges but is in th…8.8
- CVE-2020-10287The IRC5 family with UAS service enabled comes by default wi…9.8
- CVE-2020-10288IRC5 exposes an ftp server (port 21). Upon attempting to gai…9.8
- CVE-2020-1029An elevation of privilege vulnerability exists when Connecte…7.8
- CVE-2020-10290Universal Robots controller execute URCaps (zip files contai…6.8
- CVE-2020-10291Visual Components (owned by KUKA) is a robotic simulator tha…7.5
- CVE-2020-10292Visual Components (owned by KUKA) is a robotic simulator tha…8.2
- CVE-2020-1030<p>An elevation of privilege vulnerability exists when the W…7.8
- CVE-2020-1031<p>An information disclosure vulnerability exists in the way…7.5
Are you affected by CVE-2020-10289?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
