Stack Overflow Vulnerability in PX4 Autopilot for Drones
CVE-2026-32705
6.8MEDIUM
What is CVE-2026-32705?
The PX4 autopilot, a widely utilized flight control solution for drones, suffers from a vulnerability in its BST telemetry probe. Prior to version 1.17.0-rc2, this probe inaccurately writes a string terminator using an externally provided length, potentially leading to a stack overflow. If an attacker manipulates a BST device to report an oversized 'dev_name_len', they can crash the driver task or execute arbitrary code. Users are advised to update to version 1.17.0-rc2 to mitigate this risk. For additional details, refer to the official advisory.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
PX4-Autopilot < 1.17.0-rc2
