W NASA cFS do wersji 7.0.0 znaleziono podatność w funkcji CFE_MSG_GetSize pliku apps/to_lab/fsw/src/to_lab_passthru_encode.c komponentu CCSDS Packet Header Handler. Manipulacja tym elementem prowadzi do heap-based buffer overflow. Aby wykonać atak, napastnik musi mieć dostęp do sieci lokalnej. Projekt został poinformowany o problemie poprzez raport, ale nie udzielił jeszcze odpowiedzi.
▸ Pokaż oryginał (EN)
A vulnerability was found in NASA cFS up to 7.0.0. This affects the function CFE_MSG_GetSize of the file apps/to_lab/fsw/src/to_lab_passthru_encode.c of the component CCSDS Packet Header Handler. Performing a manipulation results in heap-based buffer overflow. The attacker must have access to the local network to execute the attack. The project was informed of the problem early through an issue report but has not responded yet.
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XNasa Core Flight System
APPNasa≤ 7.0.0
Powiązane podatności
NASA cFS Aquila — błędne uprawnienia w module zarządzania pamięcią umożliwiają RCE
NASA cFS (Core Flight System) Aquila is vulnerable to segmentation fault via sending a malicious telecommand t...
NASA cFS (Core Flight System) Aquila is vulnerable to path traversal in the OSAL module, allowing the override...
In NASA cFS (Core Flight System) Aquila, it is possible to put the onboard software in a state that will preve...
W NASA cFS do wersji 7.0.0 wykryta została podatność w funkcji CFE_SB_TransmitMsg pliku cfe_sb_priv.c komponen...