Description
The MAVLink communication protocol does not require cryptographic authentication by default. When MAVLink 2.0 message signing is not enabled, any message -- including SERIAL_CONTROL, which provides interactive shell access -- can be sent by an unauthenticated party with access to the MAVLink interface. PX4 provides MAVLink 2.0 message signing as the cryptographic authentication mechanism for all MAVLink communication. When signing is enabled, unsigned messages are rejected at the protocol level.
INFO
Published Date :
2026-03-31T20:20:06.506Z
Last Modified :
2026-03-31T20:36:09.044Z
Source :
icscert
AFFECTED PRODUCTS
The following products are affected by CVE-2026-1579 vulnerability.
| Vendors | Products |
|---|---|
| Px4 |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2026-1579.
CVSS Vulnerability Scoring System
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact