GPSd — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
4
occurrences
First Seen
January 8, 2026
Last Seen
January 30, 2026

gpsd is a daemon that collects GPS data from receivers and serves it to client applications over network or local interfaces.

Overview

gpsd is a daemon that collects GPS data from receivers and serves it to client applications over network or local interfaces. Recent advisories describe critical gpsd vulnerabilities: a buffer overflow leading to denial-of-service (CVE-2025) on Fedora 42, and a separate critical Denial of Service vulnerability affecting Ubuntu 25.10 (USN-7948), signaling a risk of service disruption if unpatched.

Related Threat Clusters

Recent Intelligence Reports

  • Mageia 9 gpsd Critical DoS Heap Overflow Vulnerability MGASA-2026 — Linuxsecurity · January 30, 2026
  • Fedora 42: gpsd Critical Buffer Overflow & DoS CVE-2025 — Linuxsecurity · January 20, 2026
  • Debian 11: gpsd Critical DoS Heap Issue DLA-4441-1 CVE-2025 — Linuxsecurity · January 19, 2026
  • Ubuntu 25.10: GPSd Critical Denial of Service Vulnerability USN-7948 — Linuxsecurity · January 8, 2026

CVSS v3.1 Breakdown