CVE-2024-44912: High severity cryptolib vulnerability
Published Sep 27, 2024
·Updated
NASA CryptoLib v1.3.0 was discovered to contain an Out-of-Bounds read via the TM subsystem (cryptotm.c).
Affected Software
1 affected component
nasa CryptoLib=1.3.0
Event History
Sep 27, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2024-44912?
CVE-2024-44912 has a medium severity due to its potential to allow unauthorized data access through an Out-of-Bounds read.
2
How do I fix CVE-2024-44912?
To fix CVE-2024-44912, you should upgrade NASA CryptoLib to the latest version that addresses this vulnerability.
3
What are the potential consequences of CVE-2024-44912?
The potential consequences of CVE-2024-44912 include data disclosure and possible application crashes.
4
Is CVE-2024-44912 exploitable remotely?
Yes, CVE-2024-44912 may be exploitable remotely, depending on the application context of NASA CryptoLib.
5
Which versions of NASA CryptoLib are affected by CVE-2024-44912?
CVE-2024-44912 affects NASA CryptoLib version 1.3.0.