Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 03 Sep 2026 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | MOOS-IvP through 24.8.1 contains a buffer overflow vulnerability in StringToIvPFunction() where dimension, piece, and degree counts from encoded BHV_IPF payloads are used as allocation sizes and loop bounds without validation. Attackers can supply crafted payloads with mismatched dimension values to write attacker-controlled doubles past the end of the IvPBox weight array, causing memory corruption and potential code execution. | |
| Title | MOOS-IvP through 24.8.1 Out-of-Bounds Write via Unvalidated IvP Payload Counts | |
| Weaknesses | CWE-190 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-09-03T22:38:29.903Z
Reserved: 2026-09-03T19:50:56.896Z
Link: CVE-2026-85438
No data.
Status : Received
Published: 2026-09-03T23:17:23.270
Modified: 2026-09-03T23:17:23.270
Link: CVE-2026-85438
No data.
OpenCVE Enrichment
Updated: 2026-09-03T23:30:11Z