CVE-2024-55045 Details
Description
Firmament-Autopilot FMT-Firmware commit de5aec was discovered to contain a buffer overflow via the task_mavobc_entry function at /comm/task_comm.c.
A buffer overflow vulnerability has been identified in Firmament-Autopilot FMT-Firmware commit de5aec. The issue arises in the task_mavobc_entry function within the task communication module, where the default stack size of 4096 bytes may be insufficient. This discrepancy can lead to a potential stack overflow, as the function's call stack can exceed 4400 bytes under certain conditions.
Increase the stack size for the task_mavobc_entry function to accommodate the observed stack usage.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed May 13, 2026CISA-ADP
Assessed May 14, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/Firmament-Autopilot/FMT-Firmware/issues/133 | CISA-ADP | ExploitIssue TrackingTechnical DescriptionVendor |
| https://github.com/Firmament-Autopilot/FMT-Firmware/issues/133 | [email protected] | ExploitIssue TrackingTechnical DescriptionVendor |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-120 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') | CISA-ADP |
Affected Products
| Product | Versions |
|---|---|
| Firmament-Autopilot FMT-Firmware | All versions |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| May 14, 2026 | CVE Modified | CISA-ADP |
| May 13, 2026 | New CVE Received | [email protected] |
Volerion