Core flight system
This hub aggregates every CVE we track for Core flight system, a product in the ics ot iot space. Use it to gauge the current risk picture and drill into individual advisories.
ICS / OT / IoTother
8
CVEs tracked
1
Critical
3
High
0
In CISA KEV
Severity distribution
MEDIUM4HIGH3CRITICAL1
Monthly trend
0
0
0
0
0
0
4
0
0
0
0
0
0
0
0
0
0
0
0
4
0
0
0
0
2024-092026-08
Latest CVEs
The 8 most recently published vulnerabilities affecting Core flight system.
- CVE-2026-5476NASA cFS cfe_tbl_passthru_codec.c CFE_TBL_ValidateCodecLoadSize integer overflow4.6
- CVE-2026-5475NASA cFS CCSDS Header Size cfe_sb_priv.c CFE_SB_TransmitMsg memory corruption5.5
- CVE-2026-5474NASA cFS CCSDS Packet Header to_lab_passthru_encode.c CFE_MSG_GetSize heap-based overflow6.3
- CVE-2026-5473NASA cFS Pickle pickle.load deserialization4.5
- CVE-2025-25374In NASA cFS (Core Flight System) Aquila, it is possible to put the onboard software in a state that will prevent the launch of any external application, causing a platform denial of service.7.5
- CVE-2025-25373The Memory Management Module of NASA cFS (Core Flight System) Aquila has insecure permissions, which can be exploited to gain an RCE on the platform.9.8
- CVE-2025-25371NASA cFS (Core Flight System) Aquila is vulnerable to path traversal in the OSAL module, allowing the override of any arbitrary file on the system.7.5
- CVE-2025-25372NASA cFS (Core Flight System) Aquila is vulnerable to segmentation fault via sending a malicious telecommand to the Memory Management Module.7.5
Product normalization is registry-driven with AI assist and human review. How it works