Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 08 Sep 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | PX4 Autopilot through 1.17.0 contains a stack buffer over-read vulnerability in the netman system command that fails to validate interface name length. Attackers can supply interface names of 74 bytes or more via the -i option to read beyond buffer boundaries, leaking stack memory to console output or writing it into persistent network configuration files. | |
| Title | PX4 Autopilot through 1.17.0 Stack Buffer Over-read via netman | |
| First Time appeared |
Px4
Px4 autopilot |
|
| Weaknesses | CWE-125 | |
| CPEs | cpe:2.3:a:px4:autopilot:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Px4
Px4 autopilot |
|
| References |
|
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-09-08T11:23:06.416Z
Reserved: 2026-09-08T10:58:36.171Z
Link: CVE-2026-86714
No data.
No data.
No data.
OpenCVE Enrichment
No data.
-
CWE-125
Out-of-bounds Read