Description
A flaw has been found in NASA cFS up to 7.0.1. This issue affects the function CFE_FS_ParseInputFileNameEx of the file cfe/modules/fs/fsw/src/cfe_fs_api.c. This manipulation causes out-of-bounds read. Remote exploitation of the attack is possible. The pull request to fix this issue awaits acceptance.
Published: 2026-10-04
Score: 5.1 Medium
EPSS: n/a
KEV: No
Impact: Remote Exfiltration via Out‑of‑Bounds Read
Action: Assess Impact
AI Analysis

Impact

A flaw in NASA’s CubeSat Operating System, cFS, causes an out‑of‑bounds read inside the CFE_FS_ParseInputFileNameEx function. The reading of memory outside the intended buffer is tied to CWE‑119 (Improper Restriction of Operations within the Bounds of a Buffer) and CWE‑125 (Out‑of‑Bounds Read). If an attacker can supply a crafted file name, the function may read unintended memory contents, potentially leading to information disclosure or further exploitation. The description states that remote exploitation of the attack is possible, making this a significant risk for systems that expose this API to adversaries.

Affected Systems

NASA cFS systems running versions up to and including 7.0.1 are affected. The vulnerability resides in the cfe/modules/fs/fsw/src/cfe_fs_api.c file of the cFS product. All installations that have not applied the pending pull request to address this issue remain vulnerable.

Risk and Exploitability

The CVSS score of 5.1 reflects a moderate severity, but the EPSS is currently not available, making it unclear how frequently an attacker would discover or target this flaw. The vulnerability is not listed in the CISA KEV catalog, suggesting no evidence of real‑world exploit yet. Nevertheless, the description confirms that remote exploitation is possible, meaning an attacker who can interact with the cFS instance may trigger the out‑of‑bounds read. Without an official patch, systems are at risk until a corrected build is released.

Generated by OpenCVE AI on October 4, 2026 at 23:22 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Verify the installed cFS build; if it is 7.0.1 or earlier, apply the subsequent patched release as soon as it becomes available.
  • Restrict all external inputs to the cFS interface; block or tightly control any hosts that can send file name strings, thereby limiting the attacker’s ability to trigger the bug.
  • Set up continuous monitoring for NASA cFS advisories and merge events on the project repositories, and apply the patch immediately once the pull request is merged.

Generated by OpenCVE AI on October 4, 2026 at 23:22 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 04 Oct 2026 22:15:00 +0000

Type Values Removed Values Added
Description A flaw has been found in NASA cFS up to 7.0.1. This issue affects the function CFE_FS_ParseInputFileNameEx of the file cfe/modules/fs/fsw/src/cfe_fs_api.c. This manipulation causes out-of-bounds read. Remote exploitation of the attack is possible. The pull request to fix this issue awaits acceptance.
Title NASA cFS cfe_fs_api.c CFE_FS_ParseInputFileNameEx out-of-bounds
First Time appeared Nasa
Nasa cfs
Weaknesses CWE-119
CWE-125
CPEs cpe:2.3:a:nasa:cfs:*:*:*:*:*:*:*:*
Vendors & Products Nasa
Nasa cfs
References
Metrics cvssV2_0

{'score': 3.3, 'vector': 'AV:N/AC:L/Au:M/C:N/I:N/A:P/E:ND/RL:ND/RC:C'}

cvssV3_0

{'score': 2.7, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L/E:X/RL:X/RC:C'}

cvssV3_1

{'score': 2.7, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L/E:X/RL:X/RC:C'}

cvssV4_0

{'score': 5.1, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-10-04T22:00:13.811Z

Reserved: 2026-10-04T07:57:06.622Z

Link: CVE-2026-105164

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-10-04T22:16:59.490

Modified: 2026-10-04T22:16:59.490

Link: CVE-2026-105164

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-04T23:30:21Z

Weaknesses
  • CWE-119

    Improper Restriction of Operations within the Bounds of a Memory Buffer

  • CWE-125

    Out-of-bounds Read