Home
LOW: 3.5 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:N/I:N/A:LDefault status
unaffected
Any version before 1.3.2
affected
Description
NASA CryptoLib before 1.3.2 uses Extended Procedures that are a Work in Progress (not intended for use during flight), potentially leading to a keystream oracle.
Problem types
Product status
Any version before 1.3.2
References
securitybynature.fr/post/hacking-cryptolib/
securitybynature.fr/post/hacking-cryptolib/
github.com/nasa/CryptoLib/compare/v1.3.1...v1.3.2
github.com/nasa/CryptoLib/pull/365
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.