Gpsd-project
1 CVEs tracked since 2014. Since Feb 2014, none of them reached CISA KEV.
Gpsd-project CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2014-02 | 1 | 0 |
Products
The products that kept showing up in Gpsd-project's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 7 most recently published vulnerabilities affecting Gpsd-project.
- CVE-2026-58459gpsd gpsprof Command Injection via gnuplot plot title subtype field7.8
- CVE-2025-67268gpsd before commit dc966aa contains a heap-based out-of-bounds write vulnerability in the drivers/driver_nmea2000.c file. The hnd_129540 function, which handles NMEA2000 PGN 129540 (GNSS Satellites...9.8
- CVE-2025-67269An integer underflow vulnerability exists in the `nextstate()` function in `gpsd/packet.c` of gpsd versions prior to commit `ffa1d6f40bca0b035fc7f5e563160ebb67199da7`. When parsing a NAVCOM packet,...7.5
- CVE-2023-43628An integer underflow vulnerability exists in the NTRIP Stream Parsing functionality of GPSd 3.25.1~dev. A specially crafted network packet can lead to memory corruption. An attacker can send a mali...5.9
- BDU:2019-02266Уязвимость программы сбора данных gpxlogger, связанная с ошибками инициализации, позволяющая нарушителю вызвать отказ в обслуживании4.0
- CVE-2018-17937gpsd versions 2.90 to 3.17 and microjson versions 1.0 to 1.3, an open source project, allow a stack-based buffer overflow, which may allow remote attackers to execute arbitrary code on embedded pla...8.8
- CVE-2013-2038The NMEA0183 driver in gpsd before 3.9 allows remote attackers to cause a denial of service (daemon termination) and possibly execute arbitrary code via a GPS packet with a malformed $GPGGA interpr...4.3
The record
- Peak rank
- #108 in Feb 2014
- Busiest month shown
- Feb 2014, 1 CVEs
- Months with a KEV entry
- 0 since Feb 2014
- Monthly snapshots
- 1 since 2014