CVE-2026-102808
Received Received - Intake

NULL Pointer Dereference in PX4 Autopilot sd_stress Command

Vulnerability report for CVE-2026-102808, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-29

Last updated on: 2026-09-29

Assigner: VulnCheck

Description

PX4 Autopilot through 1.17.0 contains a NULL pointer dereference vulnerability in the sd_stress command where the -b byte count parameter is parsed without validation before being passed to malloc() and memset(). Attackers with shell access, including through MAVLink, can supply invalid byte count values to crash the flight controller.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-29
Last Modified
2026-09-29
Generated
2026-09-29
AI Q&A
2026-09-29
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 2 associated CPEs
Vendor Product Version / Range
px4 autopilot to 1.17.0 (inc)
px4 autopilot 1.17.0

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-476 The product dereferences a pointer that it expects to be valid but is NULL.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This is a NULL pointer dereference vulnerability in PX4 Autopilot versions up to 1.17.0. It affects the sd_stress command where the -b byte count parameter is parsed without validation before being passed to malloc() and memset(). Attackers with shell access, including via MAVLink, can supply invalid byte count values to crash the flight controller.

Detection Guidance

To detect this vulnerability, check if your PX4 Autopilot version is 1.17.0 or earlier. Run the sd_stress command with invalid byte count values like -1 or 1000000 to see if it crashes the system. Example: sd_stress -b -1 or sd_stress -b 1000000.

Impact Analysis

An attacker with shell access could exploit this to crash the flight controller, potentially causing loss of control of a drone or unmanned vehicle. This could lead to crashes, data loss, or operational failures during flight.

Mitigation Strategies

Update PX4 Autopilot to a version that includes the patch for CVE-2026-102808. If immediate update is not possible, restrict shell access to the system and disable MAVLink commands that could trigger the sd_stress command.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-102808. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart