---
id: CVE-2025-15150
title: A vulnerability was found in PX4 PX4-Autopilot up to 1.16.0
summary: >-
  A vulnerability was found in PX4 PX4-Autopilot up to 1.16.0. Affected by this
  issue is the function
  MavlinkLogHandler::state_listing/MavlinkLogHandler::log_entry_from_id of the
  file src/modules/mavlink/mavlink_log_handler.cpp. The manipu…
severity: medium
cvss: 5.3
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L'
cwe:
  - CWE-119
  - CWE-121
  - CWE-787
vendor: dronecode
product: px4_drone_autopilot
affected:
  - px4_drone_autopilot <= 1.16.0
published: '2025-12-28'
updated: '2026-10-06'
sourceUpdated: '2026-10-06T08:10:00.193'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-15150'
references:
  - url: 'https://github.com/PX4/PX4-Autopilot/issues/26118'
    label: cna@vuldb.com
  - url: 'https://github.com/PX4/PX4-Autopilot/pull/26124'
    label: cna@vuldb.com
  - url: >-
      https://github.com/PX4/PX4-Autopilot/pull/26124/commits/338595edd1d235efd885fd5e9f45e7f9dcf4013d
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?ctiid.338527'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?id.338527'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?submit.717323'
    label: cna@vuldb.com
  - url: 'https://github.com/PX4/PX4-Autopilot/issues/26118'
    label: 134c704f-9b21-4f2e-91b3-4a467353bcc0
tags:
  - nvd
epss: 0.00248
epssPercentile: 0.14667
ingestedAt: '2026-10-06T08:50:17.388Z'
---

## Overview

A vulnerability was found in PX4 PX4-Autopilot up to 1.16.0. Affected by this issue is the function MavlinkLogHandler::state_listing/MavlinkLogHandler::log_entry_from_id of the file src/modules/mavlink/mavlink_log_handler.cpp. The manipulation results in stack-based buffer overflow. The attack is only possible with local access. The patch is identified as 338595edd1d235efd885fd5e9f45e7f9dcf4013d. It is best practice to apply a patch to resolve this issue.

## Affected

- `px4_drone_autopilot <= 1.16.0`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
