Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
NASA cFS cfe_tbl_passthru_codec.c CFE_TBL_ValidateCodecLoadSize integer overflow
Vulnerability Description
A vulnerability was identified in NASA cFS up to 7.0.0 on 32-bit. Affected is the function CFE_TBL_ValidateCodecLoadSize of the file cfe/modules/tbl/fsw/src/cfe_tbl_passthru_codec.c. The manipulation leads to integer overflow. The complexity of an attack is rather high. The exploitability is told to be difficult. A fix is planned for the upcoming version milestone of the project.
CVSS Information
CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
整数溢出或超界折返
Vulnerability Title
Core Flight System 输入验证错误漏洞
Vulnerability Description
Core Flight System(cFS)是NASA开源的一种通用的飞行软件架构框架,用于旗舰航天器、载人航天器、立方体卫星和 Raspberry Pi。 Core Flight System(cFS) 7.0.0及之前版本存在输入验证错误漏洞,该漏洞源于函数CFE_TBL_ValidateCodecLoadSize存在整数溢出。
CVSS Information
N/A
Vulnerability Type
N/A