PX4-Autopilot v1.14.3 was discovered to contain a buffer overflow via the topic_name parameter at /logger/logged_topics.cpp.
References
Link | Resource |
---|---|
https://github.com/PX4/PX4-Autopilot/blob/main/src/modules/logger/logged_topics.cpp#L440 | Product |
https://github.com/PX4/PX4-Autopilot/blob/main/src/modules/logger/logged_topics.cpp#L561 | Product |
https://github.com/PX4/PX4-Autopilot/issues/23258 | Exploit Issue Tracking Vendor Advisory |
https://github.com/PX4/PX4-Autopilot/blob/main/src/modules/logger/logged_topics.cpp#L440 | Product |
https://github.com/PX4/PX4-Autopilot/blob/main/src/modules/logger/logged_topics.cpp#L561 | Product |
https://github.com/PX4/PX4-Autopilot/issues/23258 | Exploit Issue Tracking Vendor Advisory |
Configurations
History
20 Jun 2025, 18:54
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/PX4/PX4-Autopilot/blob/main/src/modules/logger/logged_topics.cpp#L440 - Product | |
References | () https://github.com/PX4/PX4-Autopilot/blob/main/src/modules/logger/logged_topics.cpp#L561 - Product | |
References | () https://github.com/PX4/PX4-Autopilot/issues/23258 - Exploit, Issue Tracking, Vendor Advisory | |
CPE | cpe:2.3:a:dronecode:px4_drone_autopilot:1.14.3:*:*:*:*:*:*:* | |
First Time |
Dronecode
Dronecode px4 Drone Autopilot |
21 Nov 2024, 09:27
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/PX4/PX4-Autopilot/blob/main/src/modules/logger/logged_topics.cpp#L440 - | |
References | () https://github.com/PX4/PX4-Autopilot/blob/main/src/modules/logger/logged_topics.cpp#L561 - | |
References | () https://github.com/PX4/PX4-Autopilot/issues/23258 - |
14 Aug 2024, 20:35
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-120 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
Summary |
|
25 Jun 2024, 14:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-06-25 14:15
Updated : 2025-06-20 18:54
NVD link : CVE-2024-38952
Mitre link : CVE-2024-38952
CVE.ORG link : CVE-2024-38952
JSON object : View
Products Affected
dronecode
- px4_drone_autopilot
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')