CVE-2026-85452
MOOS ui-moos through 50b9c6c uMS Buffer Overflow via Long MOOS Identifiers
CVSS Score
8.8
EPSS Score
0.0%
EPSS Percentile
0th
MOOS ui-moos through 50b9c6c contains a buffer overflow vulnerability in ScopeTabPane.cpp and ScopeGrid.cpp where client and variable names are formatted into fixed 1024-byte buffers using sprintf without length validation. Attackers can supply arbitrarily long MOOS identifiers that overflow the buffers when an operator selects process list entries or pokes variables, enabling code execution.
| CWE | CWE-787 |
| Vendor | themoos |
| Product | ui-moos |
| Published | Sep 3, 2026 |
Stay Ahead of the Next One
Get instant alerts for themoos ui-moos
Be the first to know when new high vulnerabilities affecting themoos ui-moos are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Affected Versions
themoos / ui-moos
0 โค 50b9c6c
References
github.com: https://github.com/themoos/ui-moos/pull/5 github.com: https://github.com/themoos/ui-moos/commit/a6ebc0bc6cb360315ce620e865f996d189cddb0e github.com: https://github.com/themoos/ui-moos github.com: https://github.com/themoos/ui-moos/blob/50b9c6c65169c501f746cfef1e167f74a7735e74/Tools/Graphical/uMS/ScopeTabPane.cpp#L243 vulncheck.com: https://www.vulncheck.com/advisories/moos-ui-moos-through-50b9c6c-ums-buffer-overflow-via-long-moos-identifiers
Credits
Vlatko Kosturjak