Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-56788

Опубликовано: 25 июн. 2026
Источник: debian
EPSS Низкий

Описание

RTKLIB through 2.4.3 contains an out-of-bounds read vulnerability in getcodepri function when processing unrecognized RINEX observation codes, allowing attackers to trigger denial of service. Crafted RINEX files with unknown observation types cause negative array indexing into the codepris table, resulting in reliable crashes and potential memory disclosure of adjacent global data.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
rtklibunfixedpackage
rtklibno-dsatrixiepackage
rtklibnot-affectedbookwormpackage
rtklibpostponedbullseyepackage

Примечания

  • https://github.com/tomojitakasu/RTKLIB/issues/797

EPSS

Процентиль: 4%
0.00144
Низкий

Связанные уязвимости

CVSS3: 4.4
ubuntu
около 1 месяца назад

RTKLIB through 2.4.3 contains an out-of-bounds read vulnerability in getcodepri function when processing unrecognized RINEX observation codes, allowing attackers to trigger denial of service. Crafted RINEX files with unknown observation types cause negative array indexing into the codepris table, resulting in reliable crashes and potential memory disclosure of adjacent global data.

CVSS3: 4.4
nvd
около 1 месяца назад

RTKLIB through 2.4.3 contains an out-of-bounds read vulnerability in getcodepri function when processing unrecognized RINEX observation codes, allowing attackers to trigger denial of service. Crafted RINEX files with unknown observation types cause negative array indexing into the codepris table, resulting in reliable crashes and potential memory disclosure of adjacent global data.

CVSS3: 4.4
github
около 1 месяца назад

RTKLIB through 2.4.3 contains an out-of-bounds read vulnerability in getcodepri function when processing unrecognized RINEX observation codes, allowing attackers to trigger denial of service. Crafted RINEX files with unknown observation types cause negative array indexing into the codepris table, resulting in reliable crashes and potential memory disclosure of adjacent global data.

EPSS

Процентиль: 4%
0.00144
Низкий