CVE-2025-46675

CVSS 3.1 Score 4.2 of 10 (medium)

Details

Published Apr 27, 2025
Updated: May 12, 2025
CWE ID 913

Summary

CVE-2025-46675 is a vulnerability affecting NASA CryptoLib prior to version 1.3.2. This issue permits an attacker to potentially hijack spacecraft systems due to insufficient key state validation before use. The flaw could allow an unauthorized user to manipulate encrypted data and gain unauthorized access to critical spacecraft functions. The security lapse poses significant risks to NASA's space missions and could lead to severe consequences if exploited. It is crucial for NASA and organizations using NASA CryptoLib to upgrade to a patched version to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share