CVE-2026-105164
LOW
NVD
CVSS Score
2.7
Severity
LOW
Published
Oct 04, 2026
Vendor
unknown
Description
A flaw has been found in NASA cFS up to 7.0.1. This issue affects the function CFE_FS_ParseInputFileNameEx of the file cfe/modules/fs/fsw/src/cfe_fs_api.c. This manipulation causes out-of-bounds read. Remote exploitation of the attack is possible. The pull request to fix this issue awaits acceptance.