Home

Description

dataSIMS Avionics ARINC 664-1 version 4.5.3 contains a local buffer overflow vulnerability that allows attackers to overwrite memory by manipulating the milstd1553result.txt file. Attackers can craft a malicious file with carefully constructed payload and alignment sections to potentially execute arbitrary code on the Windows system.

PUBLISHED Reserved 2026-01-18 | Published 2026-01-23 | Updated 2026-01-23 | Assigner VulnCheck




MEDIUM: 6.7CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
HIGH: 8.4CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Problem types

Stack-based Buffer Overflow

Product status

4.5.3
affected

Credits

Kağan Çapar finder

References

www.exploit-db.com/exploits/49577 (ExploitDB-49577) exploit

www.ddc-web.com/ (Vendor Homepage) product

www.ddc-web.com/...1/software-1/bu-69414?partNumber=BU-69414 (Software Product Page) product

www.vulncheck.com/...ms-avionics-arinc-local-buffer-overflow (VulnCheck Advisory: dataSIMS Avionics ARINC 664-1 - Local Buffer Overflow) third-party-advisory

cve.org (CVE-2021-47881)

nvd.nist.gov (CVE-2021-47881)

Download JSON