First published: Fri Feb 09 2018(Updated: )
NASA Pyblock version v1.0 - v1.3 contains a CWE-502 vulnerability in Radar data parsing library that can result in remote code execution. This attack appear to be exploitable via Victim opening a specially crafted radar data file. This vulnerability appears to have been fixed in v1.4.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NASA Pyblock | >=1.0<=1.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-1000046 is a vulnerability in NASA Pyblock version v1.0 - v1.3 that can result in remote code execution.
This vulnerability can be exploited by opening a specially crafted radar data file.
NASA Pyblock versions v1.0 - v1.3 are affected by this vulnerability.
Yes, this vulnerability has been fixed in NASA Pyblock version v1.4.
CVE-2018-1000046 has a severity rating of 7.8 (high).