Medium severity6.5NVD Advisory· Published Sep 2, 2026
CVE-2026-84698
CVE-2026-84698
Description
PX4 Autopilot contains a heap buffer overflow vulnerability in the sd_bench command that writes a four-byte block number into a user-supplied sized allocation. Attackers can invoke sd_bench with a block size below four bytes to overflow the heap buffer and potentially execute code or crash the system.
Affected products
1Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.