NASA openVSP Buffer Overflow Vulnerability Leading to Denial-of-Service

Vulnerability

A buffer overflow vulnerability has been identified in NASA openVSP version 3.16.1. This vulnerability allows local attackers to cause the application to crash by entering an excessively long string in the geometry name field. The issue can be exploited by pasting a 5000-byte payload into the name input field within the Geom browser pod addition interface, effectively triggering a denial-of-service condition.

Impact

Exploitation of this vulnerability leads to a denial-of-service condition, causing the application to crash.

Added: May 26, 2026, 7:36 PM
Updated: May 26, 2026, 7:36 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
4.6
remediation
0.0
relevance
9.4
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.