CVE-2026-67976
Received Received - Intake

Ref::SignalGen Component Denial of Service in Fprime Framework

Vulnerability report for CVE-2026-67976, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-08-03

Last updated on: 2026-08-03

Assigner: MITRE

Description

The Ref::SignalGen component of fprime framework v4.2.2 does not validate the safety of user-controlled parameters, allowing attackers to cause a Denial of Service (DoS) via inputting unsafe parameters.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-08-03
Last Modified
2026-08-03
Generated
2026-08-04
AI Q&A
2026-08-04
EPSS Evaluated
N/A
NVD

Affected Vendors & Products

Currently, no data is known.

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-UNKNOWN

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

The Ref::SignalGen component in fprime framework v4.2.2 fails to validate user-controlled parameters for safety. This allows attackers to exploit the lack of validation by providing unsafe inputs, which can lead to a Denial of Service (DoS) condition.

Impact Analysis

This vulnerability could allow attackers to disrupt the availability of systems using the fprime framework v4.2.2. If exploited, it may cause the Ref::SignalGen component to crash or become unresponsive, leading to service outages or degraded performance.

Compliance Impact

This vulnerability does not directly affect compliance with GDPR, HIPAA, or similar standards as it involves a Denial of Service (DoS) condition in a software component. Compliance impacts would depend on how the affected system is used in a regulated environment rather than the vulnerability itself.

Mitigation Strategies

Update the Ref::SignalGen component in the fprime framework to a version that validates user-controlled parameters to prevent unsafe inputs from causing a Denial of Service.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-67976. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart