CVE-2026-5474: NASA cFS CCSDS Packet Header to_lab_passthru_encode.c CFE_MSG_GetSize heap-based overflow
A vulnerability was found in NASA cFS up to 7.0.0. This affects the function CFEMSGGetSize of the file apps/tolab/fsw/src/tolabpassthruencode.c of the component CCSDS Packet Header Handler. Performing a manipulation results in heap-based buffer overflow. The attacker must have access to the local network to execute the attack. The project was informed of the problem early through an issue report but has not responded yet.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-5474?
CVE-2026-5474 is classified as a high severity vulnerability due to a heap-based overflow risk.
How does CVE-2026-5474 affect NASA cFS software?
CVE-2026-5474 impacts the CFE_MSG_GetSize function within the CCSDS Packet Header Handler of NASA cFS up to version 7.0.0.
What are the potential consequences of exploiting CVE-2026-5474?
Exploiting CVE-2026-5474 could lead to arbitrary code execution or crash of the affected application.
How do I fix CVE-2026-5474?
To mitigate CVE-2026-5474, upgrade to a patched version of NASA cFS that addresses this vulnerability.
Where can I find more information about CVE-2026-5474?
Detailed information about CVE-2026-5474 can usually be found in security advisories released by NASA.