Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-29913

Опубликовано: 17 мар. 2025
Источник: nvd
CVSS3: 9.8
EPSS Низкий

Описание

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running the core Flight System (cFS) and a ground station. A critical heap buffer overflow vulnerability was identified in the Crypto_TC_Prep_AAD function of CryptoLib versions 1.3.3 and prior. This vulnerability allows an attacker to trigger a Denial of Service (DoS) or potentially execute arbitrary code (RCE) by providing a maliciously crafted telecommand (TC) frame that causes an unsigned integer underflow. The vulnerability lies in the function Crypto_TC_Prep_AAD, specifically during the computation of tc_mac_start_index. The affected code incorrectly calculates the MAC start index without ensuring it remains within the bounds of the ingest buffer. When tc_mac_start_index underflows due to an incorrect length calculation, the function attempts to access an out-of-bounds memory location, leading to a seg

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:nasa:cryptolib:*:*:*:*:*:*:*:*
Версия до 1.4.0 (исключая)

EPSS

Процентиль: 67%
0.0053
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-125
CWE-125

Связанные уязвимости

CVSS3: 9.8
fstec
11 месяцев назад

Уязвимость функции Crypto_TC_Prep_AAD библиотеки CryptoLib, связанная с чтением за пределами допустимого диапазона при анализе созданного файла, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 67%
0.0053
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-125
CWE-125