CVE-2026-67974: Input Validation
Published Aug 3, 2026
·Updated
A parser boundary flaw in the Software Bus Network (SBN) application's peer subscription message handling in NASA cFS v7.0.1 allows attackers to cause a Denial of Service (DoS) via sending a crafted packet.
Affected Software
1 affected component
nasa cFS v7.0.1 (Software Bus Network)=7.0.1
Event History
Aug 3, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·10:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-67974?
CVE-2026-67974 has a risk rating of 26, indicating a significant potential for impact.
2
What does CVE-2026-67974 affect?
CVE-2026-67974 affects the Software Bus Network (SBN) application in NASA cFS v7.0.1.
3
What type of vulnerability is CVE-2026-67974?
CVE-2026-67974 is classified as a parser boundary flaw that can lead to Denial of Service (DoS).
4
How can attackers exploit CVE-2026-67974?
Attackers can exploit CVE-2026-67974 by sending a specially crafted packet to the peer subscription message handler.
5
How do I fix CVE-2026-67974?
To mitigate CVE-2026-67974, upgrade to a patched version of NASA cFS that resolves the boundary flaw.