Loading market data...
← Back to CVE feed

CVE-2026-102809

MEDIUM CVSS 6.5 View on NVD ↗

Description

PX4 Autopilot through 1.17.0 contains an uncontrolled stack allocation vulnerability in the file2 test command that fails to validate the write chunk size parameter. Attackers with shell access can supply an excessively large value to the -c option to trigger stack overflow and crash the flight controller.

CVSS Vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Published: Sep 29, 2026 18:17 UTC Modified: Sep 29, 2026 19:17 UTC