CVE-2026-7300 Details
Description
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional (Web Integration Service) allows Filter Failure through Buffer Overflow. This issue affects Connext Professional: from 7.4.0 before 7.7.0.1, from 7.0.0 before 7.3.1.3, from 6.1.2 before 6.1.*.
A buffer overflow vulnerability has been identified in RTI Connext Professional Web Integration Service. This vulnerability, categorized as 'Classic Buffer Overflow', allows for filter failure by improperly copying data without checking the size of the input. The issue affects Connext Professional versions 7.4.0 prior to 7.*, 7.0.0 prior to 7.3.1.3, and 6.1.2 prior to 6.1.*.
Users can update to RTI Connext Professional version 7.3.1.3 or 7.7.0, both of which include the necessary fix. For versions other than 7.3.1.3 or 7.7.0, patches can be requested through the RTI Customer Portal or by contacting RTI Support.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Jun 17, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://www.rti.com/vulnerabilities/#cve-2026-7300 | RTI | Vendor Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-120 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') | RTI |
Affected Products
| Product | Versions |
|---|---|
| rti connext professional | >= 6.1.2, < 7.4.0 |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Sep 22, 2026 | CVE Modified | RTI |
| Jul 8, 2026 | Initial Analysis | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Jun 17, 2026 | New CVE Received | RTI |