PT-2025-17972 · Nasa · Nasa Cryptolib

CVE-2025-46675

·

Publicado

2025-04-27

·

Atualizado

2025-04-28

CVSS v3.1

4.2

Média

VetorAV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions NASA CryptoLib versions prior to 1.3.2
Description The issue is related to the key state not being checked before use in NASA CryptoLib, potentially leading to spacecraft hijacking.
Recommendations For NASA CryptoLib versions prior to 1.3.2, update to version 1.3.2 or later to resolve the issue. As a temporary workaround, consider implementing additional validation checks for the key state before use.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-46675

Produtos afetados

Nasa Cryptolib