MEDIUMVulnerability
CVE-2026-82479
A vulnerability was identified in NASA cFS up to 7.0.1. Impacted is the function OS_read of the file modules/protocol/tcp/fsw/src/sbn_tcp_if.c of the component SBN TCP Module. Such manipulation of the argument MsgSz leads to buffer overflow. The attack must be carried out from within the local network. The vendor was contacted early about this disclosure but did not respond in any way.
Properties
- severity
- MEDIUM
- score
- 6.3
- epss_score
- 0.00254
- cve_id
- CVE-2026-82479
- vector
- CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
- published_at
- 2026-08-30T06:16:55.450
- last_modified
- 2026-09-01T20:48:22.513
- epss_percentile
- 0.16831
Related Entities (4)
ENRICHED_BY (1)
→[Source]FIRST EPSS
HAS_WEAKNESS (2)
→[Weakness]Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
→[Weakness]Improper Restriction of Operations within the Bounds of a Memory Buffer
DESCRIBED_BY (1)
→[Source]NVD
Explore deeper with Ninja Signal's threat intelligence graph