GHSA-v57f-4hqc-phxqMediumCVSS 2.7
A flaw has been found in NASA cFS up to 7.0.1. This issue affects the function...
🔗 CVE IDs covered (1)
📋 Description
A flaw has been found in NASA cFS up to 7.0.1. This issue affects the function CFE_FS_ParseInputFileNameEx of the file cfe/modules/fs/fsw/src/cfe_fs_api.c. This manipulation causes out-of-bounds read. Remote exploitation of the attack is possible. The pull request to fix this issue awaits acceptance.
🔗 References (9)
- https://nvd.nist.gov/vuln/detail/CVE-2026-105164
- https://github.com/nasa/cFS/issues/893
- https://github.com/nasa/cFS/pull/984
- https://github.com/nasa/cFS
- https://vuldb.com/cve/CVE-2026-105164
- https://vuldb.com/submit/969930
- https://vuldb.com/vuln/413396
- https://vuldb.com/vuln/413396/cti
- https://github.com/advisories/GHSA-v57f-4hqc-phxq