{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/prealm--24.8.1/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:moos-ivp:prealm:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":7.5,"id":"CVE-2026-85447"}],"_cs_exploited":true,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["pRealm (\u003c= 24.8.1)"],"_cs_severities":["medium"],"_cs_tags":[],"_cs_type":"threat","_cs_vendors":["MOOS-IvP"],"content_html":"\u003cp\u003eMOOS-IvP pRealm, a component used in autonomous marine vehicle systems, contains a vulnerability (CVE-2026-85447) that allows for the exhaustion of system resources. The issue stems from the pRealm process accepting REALMCAST_REQ subscriptions without enforcing limits on the subscription duration or the number of variables requested.\u003c/p\u003e\n\u003cp\u003eAn attacker with network access to the MOOS community can send a malformed or malicious REALMCAST_REQ message containing an unbounded duration or an excessively large variable list. By registering these long-lived pipeways, the attacker forces pRealm to process and generate output indefinitely. This unchecked resource consumption can lead to severe performance degradation or total service unavailability for the pRealm process, impacting the stability and operation of the MOOS-IvP environment. This vulnerability affects all versions up to and including 24.8.1.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation leads to a denial-of-service condition for the pRealm component. In the context of autonomous marine vehicles, this can compromise the ability of the system to process real-time environmental data or command-and-control telemetry, potentially causing critical system instability or operational failure.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritized actions for security and engineering teams:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate MOOS-IvP to the latest version that contains a patch for CVE-2026-85447.\u003c/li\u003e\n\u003cli\u003eImplement network-level segmentation to restrict access to the MOOS community communications, ensuring only trusted systems can submit subscription requests to pRealm.\u003c/li\u003e\n\u003cli\u003eMonitor system-level resource usage for the pRealm process, specifically looking for sustained high CPU and memory utilization that aligns with periods of unusual network traffic.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-09-03T23:28:55Z","date_published":"2026-09-03T23:28:55Z","id":"https://feed.craftedsignal.io/briefs/2026-09-moos-ivp-prealm-dos/","summary":"MOOS-IvP pRealm version 24.8.1 and earlier is vulnerable to a denial-of-service attack due to improper validation of REALMCAST_REQ subscriptions, allowing attackers to exhaust system resources.","title":"Resource Exhaustion in MOOS-IvP pRealm via REALMCAST_REQ","url":"https://feed.craftedsignal.io/briefs/2026-09-moos-ivp-prealm-dos/"}],"language":"en","title":"CraftedSignal Threat Feed - PRealm (\u003c= 24.8.1)","version":"https://jsonfeed.org/version/1.1"}