CVE detail
CVE-2025-67268
gpsd before commit dc966aa contains a heap-based out-of-bounds write vulnerability in the drivers/driver_nmea2000.c file. The hnd_129540 function, which handles NMEA2000 PGN 129540 (GNSS Satellites in View) packets, fails to validate the user-supplied satellite count against the size of the skyview array (184 elements). This allows an attacker to write beyond the bounds of the array by providing a satellite count up to 255, leading to memory corruption, Denial of Service (DoS), and potentially arbitrary code execution.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 23.0 · diversity 13.0 · KEV 0.0 · OTX 0.0 · PoC 4.5
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
9 source links · newest first
- https://security.access.redhat.com/data/csaf/v2/vex/2025/cve-2025-67268.jsonsecurity.access.redhat.com
No excerpt available.
Vendor Advisorysecurity.access.redhat.comJan 2, 2026, 4:17 PM - https://bugzilla.redhat.com/show_bug.cgi?id=2426835bugzilla.redhat.com
No excerpt available.
Exploitbugzilla.redhat.comJan 2, 2026, 4:17 PM - https://access.redhat.com/security/cve/CVE-2025-67268access.redhat.com
No excerpt available.
Exploitaccess.redhat.comJan 2, 2026, 4:17 PM - https://access.redhat.com/errata/RHSA-2026:1621access.redhat.com
No excerpt available.
Exploitaccess.redhat.comJan 2, 2026, 4:17 PM - https://access.redhat.com/errata/RHSA-2026:0771access.redhat.com
No excerpt available.
Exploitaccess.redhat.comJan 2, 2026, 4:17 PM - https://access.redhat.com/errata/RHSA-2026:0770access.redhat.com
No excerpt available.
Exploitaccess.redhat.comJan 2, 2026, 4:17 PM No excerpt available.
Exploitgithub.comJan 2, 2026, 4:17 PMNo excerpt available.
Exploitgithub.comJan 2, 2026, 4:17 PMNo excerpt available.
Exploitgithub.comJan 2, 2026, 4:17 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
1 repository references · best confidence 0.90 · max 0 stars
- Jaenact/gspd_cveHigh confidencegithubNVD Exploit reference0 starsDiscovered Jul 15, 2026, 3:18 AM
NVD labels the source link as Exploit; this is not independent verification of the repository's code.
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-76046CVSS N/A · Unrated
Buffer overflow in ANGLE in Google Chrome on on Android prior to 151.0.7922.169 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outsid…
- CVE-2026-76036CVSS N/A · Unrated
Buffer overflow in Dawn in Google Chrome on on Android prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Ch…
- CVE-2026-76034CVSS N/A · Unrated
Buffer overflow in WebGL in Google Chrome prior to 151.0.7922.169 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium securi…
- CVE-2026-67868CVSS 9.8 · Critical
A heap-based out-of-bounds write vulnerability exists in S2OPC 1.7.3 in server-side EventFilter handling during CreateMonitoredItems processing. This allows a remote attacker to e…
- CVE-2026-68765CVSS 5.2 · Medium
hashcat master branch builds after v7.1.2 contain a heap buffer overflow vulnerability in the KeePass AESKDF/KDBX v4 module (module 34301) that allows attackers to corrupt adjacen…
- CVE-2026-19970CVSS 2.1 · Low
A vulnerability was detected in Open Asset Import Library Assimp 17c12da. This affects the function Assimp::MDLImporter::AddBonesToNodeGraph_3DGS_MDL7 of the file code/AssetLib/MD…