The number and severity of CVEs published that impact products developed by Rtklib over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-56786CRITICAL RTKLIB through 2.4.3 contains an out-of-bounds write vulnerability in decode_type1033 function that fails to clamp length counters to destination buffer size, allowing up to 191-by | Jun 25, 2026 | 9.8 | 42 | NO | NO |
CVE-2026-56787HIGH RTKLIB through 2.4.3 contains an off-by-one out-of-bounds read vulnerability in the decode_ssr3 function at src/rtcm3.c:1446 that allows remote attackers to trigger a global buffer | Jun 25, 2026 | 7.5 | 32 | NO | NO |
CVE-2026-56788HIGH RTKLIB through 2.4.3 contains an out-of-bounds read vulnerability in getcodepri function when processing unrecognized RINEX observation codes, allowing attackers to trigger denial | Jun 25, 2026 | 7.1 | 30 | NO | NO |
CVE-2026-56789MEDIUM RTKLIB through 2.4.3 contains a heap buffer overflow vulnerability in the readrnxobsb function in src/rinex.c that allows attackers to trigger memory corruption by failing to clamp | Jun 25, 2026 | 6.5 | 29 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Rtklib.
Media articles that mention a CVE ID that affects a product developed by Rtklib — matched by CVE ID, not by vendor name.