Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-56789

Опубликовано: 25 июн. 2026
Источник: nvd
CVSS3: 6.5
EPSS Низкий

Описание

RTKLIB through 2.4.3 contains a heap buffer overflow vulnerability in the readrnxobsb function in src/rinex.c that allows attackers to trigger memory corruption by failing to clamp satellite count values from RINEX epoch headers. Attackers can craft malicious RINEX files declaring more than 64 satellites per epoch to cause heap buffer overflow writes and out-of-bounds stack reads, crashing RTKLIB-based applications including rnx2rtkp and RTKPOST.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:rtklib:rtklib:*:*:*:*:*:*:*:*
Версия до 2.4.3 (включая)

EPSS

Процентиль: 36%
0.00422
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-122

Связанные уязвимости

CVSS3: 6.5
ubuntu
3 месяца назад

RTKLIB through 2.4.3 contains a heap buffer overflow vulnerability in the readrnxobsb function in src/rinex.c that allows attackers to trigger memory corruption by failing to clamp satellite count values from RINEX epoch headers. Attackers can craft malicious RINEX files declaring more than 64 satellites per epoch to cause heap buffer overflow writes and out-of-bounds stack reads, crashing RTKLIB-based applications including rnx2rtkp and RTKPOST.

CVSS3: 6.5
debian
3 месяца назад

RTKLIB through 2.4.3 contains a heap buffer overflow vulnerability in ...

CVSS3: 6.5
github
3 месяца назад

RTKLIB through 2.4.3 contains a heap buffer overflow vulnerability in the readrnxobsb function in src/rinex.c that allows attackers to trigger memory corruption by failing to clamp satellite count values from RINEX epoch headers. Attackers can craft malicious RINEX files declaring more than 64 satellites per epoch to cause heap buffer overflow writes and out-of-bounds stack reads, crashing RTKLIB-based applications including rnx2rtkp and RTKPOST.

EPSS

Процентиль: 36%
0.00422
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-122