Zurück zur CVE-Übersicht
CVE-2026-42996
NONERisk Signal Score0/100 — NIEDRIG
EPSS-Score
0%
Exploit-Wahrscheinlichkeit (30 Tage)
Beschreibung
JS8Call through 2.3.1 and JS8Call-improved before 3.0 have a stack-based buffer overflow via a radio transmission of @APRSIS GRID followed by a long Maidenhead locator. This occurs in grid2deg in APRSISClient.cpp.
Referenzen
- https://amateur-radio-resources.sourceforge.io/PDF/JS8APRS.pdf
- https://github.com/JS8Call-improved/JS8Call-improved/commit/a6c7a19b82bbd7c2c0c8...
- https://github.com/JS8Call-improved/JS8Call-improved/security/advisories/GHSA-98...
- https://github.com/js8call/js8call/blob/fd721e8b67eed84cb3c09d018205ab9a53e1a8b1...
- https://github.com/JS8Call-improved/JS8Call-improved/security/advisories/GHSA-98...