Количество 8
Количество 8
CVE-2025-67268
gpsd before commit dc966aa contains a heap-based out-of-bounds write vulnerability in the drivers/driver_nmea2000.c file. The hnd_129540 function, which handles NMEA2000 PGN 129540 (GNSS Satellites in View) packets, fails to validate the user-supplied satellite count against the size of the skyview array (184 elements). This allows an attacker to write beyond the bounds of the array by providing a satellite count up to 255, leading to memory corruption, Denial of Service (DoS), and potentially arbitrary code execution.
CVE-2025-67268
gpsd before commit dc966aa contains a heap-based out-of-bounds write vulnerability in the drivers/driver_nmea2000.c file. The hnd_129540 function, which handles NMEA2000 PGN 129540 (GNSS Satellites in View) packets, fails to validate the user-supplied satellite count against the size of the skyview array (184 elements). This allows an attacker to write beyond the bounds of the array by providing a satellite count up to 255, leading to memory corruption, Denial of Service (DoS), and potentially arbitrary code execution.
CVE-2025-67268
gpsd before commit dc966aa contains a heap-based out-of-bounds write v ...
GHSA-mp8p-xhgf-rpjv
gpsd before commit dc966aa contains a heap-based out-of-bounds write vulnerability in the drivers/driver_nmea2000.c file. The hnd_129540 function, which handles NMEA2000 PGN 129540 (GNSS Satellites in View) packets, fails to validate the user-supplied satellite count against the size of the skyview array (184 elements). This allows an attacker to write beyond the bounds of the array by providing a satellite count up to 255, leading to memory corruption, Denial of Service (DoS), and potentially arbitrary code execution.
RLSA-2026:0771
Important: gpsd-minimal security update
RLSA-2026:0770
Important: gpsd security update
ELSA-2026-0771
ELSA-2026-0771: gpsd-minimal security update (IMPORTANT)
ELSA-2026-0770
ELSA-2026-0770: gpsd security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-67268 gpsd before commit dc966aa contains a heap-based out-of-bounds write vulnerability in the drivers/driver_nmea2000.c file. The hnd_129540 function, which handles NMEA2000 PGN 129540 (GNSS Satellites in View) packets, fails to validate the user-supplied satellite count against the size of the skyview array (184 elements). This allows an attacker to write beyond the bounds of the array by providing a satellite count up to 255, leading to memory corruption, Denial of Service (DoS), and potentially arbitrary code execution. | CVSS3: 9.8 | 0% Низкий | около 1 месяца назад | |
CVE-2025-67268 gpsd before commit dc966aa contains a heap-based out-of-bounds write vulnerability in the drivers/driver_nmea2000.c file. The hnd_129540 function, which handles NMEA2000 PGN 129540 (GNSS Satellites in View) packets, fails to validate the user-supplied satellite count against the size of the skyview array (184 elements). This allows an attacker to write beyond the bounds of the array by providing a satellite count up to 255, leading to memory corruption, Denial of Service (DoS), and potentially arbitrary code execution. | CVSS3: 9.8 | 0% Низкий | около 1 месяца назад | |
CVE-2025-67268 gpsd before commit dc966aa contains a heap-based out-of-bounds write v ... | CVSS3: 9.8 | 0% Низкий | около 1 месяца назад | |
GHSA-mp8p-xhgf-rpjv gpsd before commit dc966aa contains a heap-based out-of-bounds write vulnerability in the drivers/driver_nmea2000.c file. The hnd_129540 function, which handles NMEA2000 PGN 129540 (GNSS Satellites in View) packets, fails to validate the user-supplied satellite count against the size of the skyview array (184 elements). This allows an attacker to write beyond the bounds of the array by providing a satellite count up to 255, leading to memory corruption, Denial of Service (DoS), and potentially arbitrary code execution. | CVSS3: 9.8 | 0% Низкий | около 1 месяца назад | |
RLSA-2026:0771 Important: gpsd-minimal security update | 21 день назад | |||
RLSA-2026:0770 Important: gpsd security update | 20 дней назад | |||
ELSA-2026-0771 ELSA-2026-0771: gpsd-minimal security update (IMPORTANT) | 22 дня назад | |||
ELSA-2026-0770 ELSA-2026-0770: gpsd security update (IMPORTANT) | 22 дня назад |
Уязвимостей на страницу