<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>UFldShoreBroker (&lt;= 24.8.1) - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/products/ufldshorebroker--24.8.1/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Thu, 03 Sep 2026 23:24:53 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/products/ufldshorebroker--24.8.1/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>Unauthenticated Bridge Redirection in MOOS-IvP uFldShoreBroker</title><link>https://feed.craftedsignal.io/briefs/2026-09-moos-ivp-vulnerability/</link><pubDate>Thu, 03 Sep 2026 23:24:53 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-09-moos-ivp-vulnerability/</guid><description>MOOS-IvP uFldShoreBroker through version 24.8.1 is vulnerable to unauthorized route manipulation via forged node ping messages, enabling attackers to redirect data to arbitrary network locations.</description><content:encoded><![CDATA[<p>MOOS-IvP uFldShoreBroker, a component used for coordinating data bridging in autonomous marine vehicle simulations and control systems, contains a critical security vulnerability (CVE-2026-85434). The flaw exists because the software fails to authenticate 'NODE_BROKER_PING' messages before processing them to establish outbound bridge routes. By publishing a crafted 'NODE_BROKER_PING' message containing malicious 'HostRecord' data, an attacker can coerce the broker into redirecting variable traffic to arbitrary attacker-controlled IP addresses. This effectively allows an adversary to intercept, modify, or drop sensitive operational data flowing across the bridge, potentially impacting the mission integrity of connected autonomous nodes. This vulnerability affects all versions of uFldShoreBroker up to and including 24.8.1. Defenders must identify any instances of this software within their network segments and restrict message publication access to authorized nodes only.</p>
<h2 id="impact">Impact</h2>
<p>Successful exploitation allows for the redirection of sensitive telemetry and control variables to malicious infrastructure. In maritime autonomous systems, this can lead to operational disruption, loss of communication with remote vessels, or the injection of false navigational or control data, potentially causing physical damage or loss of autonomous assets.</p>
<h2 id="recommendation">Recommendation</h2>
<ul>
<li>Upgrade uFldShoreBroker to a patched version beyond 24.8.1 immediately upon vendor availability.</li>
<li>Implement strict network segmentation for systems running MOOS-IvP to limit the exposure of the messaging bus to unauthorized participants.</li>
<li>Audit and restrict permissions for publishing 'NODE_BROKER_PING' messages to known, authenticated, and trusted sources within the MOOS-IvP network.</li>
<li>Monitor network traffic for unexpected outbound connections from nodes running uFldShoreBroker to unknown or non-standard external destinations.</li>
</ul>
]]></content:encoded><category domain="severity">critical</category><category domain="type">advisory</category><category>denial-of-service</category><category>vulnerability</category><category>robotics</category></item></channel></rss>