CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

NASA Core Flight System (cFS) Health & Safety (HS) Application

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 2706

As cited

Copy frozen at (site build).

vulnerabilities

NASA Core Flight System (cFS) Health & Safety (HS) Application

A null pointer dereference vulnerability (CVE-2026-15352) in NASA's Core Flight System Health & Safety application can cause a denial-of-service condition when processing Housekeeping Telemetry requests. The flaw affects versions prior to v7.0.1, which NASA recommends as the remediation. CISA scored the vulnerability as High severity with a CVSS v3.1 base score of 7.5 and notes no known public exploitation at this time.

Why it matters: Organizations operating NASA cFS HS application in critical infrastructure or space systems need to update to v7.0.1 immediately to prevent denial-of-service attacks that could disrupt mission-critical telemetry and health monitoring functions.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

NASA Core Flight System (cFS) Health & Safety (HS) Application

A null pointer dereference vulnerability (CVE-2026-15352) in NASA's Core Flight System Health & Safety application can cause a denial-of-service condition when processing Housekeeping Telemetry requests. The flaw affects versions prior to v7.0.1, which NASA recommends as the remediation. CISA scored the vulnerability as High severity with a CVSS v3.1 base score of 7.5 and notes no known public exploitation at this time.

Why it matters: Organizations operating NASA cFS HS application in critical infrastructure or space systems need to update to v7.0.1 immediately to prevent denial-of-service attacks that could disrupt mission-critical telemetry and health monitoring functions.

VendorsGitHub
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary