Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-56789

Опубликовано: 25 июн. 2026
Источник: nvd
CVSS3: 6.5
EPSS Низкий

Описание

RTKLIB through 2.4.3 contains a heap buffer overflow vulnerability in the readrnxobsb function in src/rinex.c that allows attackers to trigger memory corruption by failing to clamp satellite count values from RINEX epoch headers. Attackers can craft malicious RINEX files declaring more than 64 satellites per epoch to cause heap buffer overflow writes and out-of-bounds stack reads, crashing RTKLIB-based applications including rnx2rtkp and RTKPOST.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:rtklib:rtklib:*:*:*:*:*:*:*:*
Версия до 2.4.3 (включая)

EPSS

Процентиль: 16%
0.00249
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-122

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 1 месяца назад

RTKLIB through 2.4.3 contains a heap buffer overflow vulnerability in the readrnxobsb function in src/rinex.c that allows attackers to trigger memory corruption by failing to clamp satellite count values from RINEX epoch headers. Attackers can craft malicious RINEX files declaring more than 64 satellites per epoch to cause heap buffer overflow writes and out-of-bounds stack reads, crashing RTKLIB-based applications including rnx2rtkp and RTKPOST.

CVSS3: 6.5
debian
около 1 месяца назад

RTKLIB through 2.4.3 contains a heap buffer overflow vulnerability in ...

CVSS3: 6.5
github
около 1 месяца назад

RTKLIB through 2.4.3 contains a heap buffer overflow vulnerability in the readrnxobsb function in src/rinex.c that allows attackers to trigger memory corruption by failing to clamp satellite count values from RINEX epoch headers. Attackers can craft malicious RINEX files declaring more than 64 satellites per epoch to cause heap buffer overflow writes and out-of-bounds stack reads, crashing RTKLIB-based applications including rnx2rtkp and RTKPOST.

EPSS

Процентиль: 16%
0.00249
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-122