CVE-2025-46675
CVSS 3.1 Score 4.2 of 10 (medium)
Details
Summary
CVE-2025-46675 is a vulnerability affecting NASA CryptoLib prior to version 1.3.2. This issue permits an attacker to potentially hijack spacecraft systems due to insufficient key state validation before use. The flaw could allow an unauthorized user to manipulate encrypted data and gain unauthorized access to critical spacecraft functions. The security lapse poses significant risks to NASA's space missions and could lead to severe consequences if exploited. It is crucial for NASA and organizations using NASA CryptoLib to upgrade to a patched version to mitigate this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- NASA