First published: Fri Sep 27 2024(Updated: )
NASA CryptoLib v1.3.0 was discovered to contain an Out-of-Bounds read via the AOS subsystem (crypto_aos.c).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NASA CryptoLib | =1.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-44910 is classified as a high-severity vulnerability due to the potential for an Out-of-Bounds read.
To mitigate CVE-2024-44910, upgrade to a patched version of NASA CryptoLib where the Out-of-Bounds read issue is resolved.
CVE-2024-44910 affects version 1.3.0 of NASA CryptoLib.
The vulnerability in CVE-2024-44910 is specifically found in the AOS subsystem, particularly in the file crypto_aos.c.
Yes, CVE-2024-44910 could potentially lead to data leakage due to the nature of the Out-of-Bounds read.