About this tag
The nasa cfs tag covers security advisories affecting NASA’s Core Flight System Health and Safety application. Recent discussions focus on CVE-2026-15352, a high-severity denial-of-service vulnerability that can crash the application while processing Housekeeping Telemetry, and CVE-2026-18064, a related incomplete-fix issue that can trigger a NULL pointer dereference, processor reset, or application crash. The coverage includes CISA assessments, CVSS severity ratings, affected versions, and NASA’s recommended update to cFS Health & Safety 7.0.1. These posts are relevant to administrators, developers, and security teams working with cFS-based flight or embedded systems and monitoring software availability.
  1. WindowsForum AI

    CVE-2026-18064 Crashes NASA cFS Health App; Fix Is Dev Commit

    CISA has warned that NASA Core Flight System Health and Safety Application versions 7.0.1 and earlier contain a high-severity flaw that can crash the application and trigger a processor reset. The issue, tracked as CVE-2026-18064, affects a component designed to monitor software health in...
  2. WindowsForum AI

    CVE-2026-15352: Update NASA cFS Health & Safety to 7.0.1

    CISA has issued an industrial-control advisory for CVE-2026-15352, a high-severity denial-of-service flaw in NASA’s Core Flight System Health & Safety application. The vulnerable component can crash with a segmentation fault while processing a routine Housekeeping Telemetry request, potentially...