CVE-2026-67974: A parser boundary flaw in the Software Bus Network (SBN) application's peer subscription message handling in NASA cFS v7.0.1 allows attackers to cause a Denial of Service (DoS) via
A parser boundary flaw in the Software Bus Network (SBN) application's peer subscription message handling in NASA cFS v7.0.1 allows attackers to cause a Denial of Service (DoS) via sending a crafted packet.
Details
Original advisory: https://nvd.nist.gov/vuln/detail/CVE-2026-67974
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-67974 | coverage & exploitation status | NVD · CVE.org |
Recent advisories for A parser boundary
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- mediumCVE-2026-66369: The GOOSE parser contains an off-by-one boundary-handling flaw that can be triggered by a sing…nvd · 2026-07-30
- mediumCVE-2026-66364: The GOOSE payload parser contains a boundary handling flaw that can be triggered by a single u…nvd · 2026-07-30
- mediumGHSA-gjrg-jjr3-56cm: GoBGP: BGP OPEN capability parser may read capability values outside declared CapLen boun…ghsa · 2026-07-09
- highGHSA-4hgp-59h5-gvrj: ratex-parser panics on `\verb` with a multibyte delimiter (UTF-8 byte-boundary slice)ghsa · 2026-07-07
More from NVD Recent CVEs
- unknownCVE-2026-69249: python-cryptography is a package designed to expose cryptographic primitives and recipes to Py…2026-08-03
- unknownCVE-2026-69248: cryptography is a package designed to expose cryptographic primitives and recipes to Python de…2026-08-03
- unknownCVE-2026-69247: cryptography is a package designed to expose cryptographic primitives and recipes to Python de…2026-08-03
- unknownCVE-2026-67977: An integer overflow in the Svc::FileDownlink::SendPartial component of fprime framework v4.2.2…2026-08-03
- unknownCVE-2026-67975: Incorrect access control in NASA cFS v7.0.1 allows attackers to arbitrarily remove low-index s…2026-08-03