CVE-2025-25373: Critical severity nasa cFS Aquila vulnerability
Published Mar 25, 2025
·Updated
The Memory Management Module of NASA cFS (Core Flight System) Aquila has insecure permissions, which can be exploited to gain an RCE on the platform.
Affected Software
2 affected components
nasa cFS Aquila
nasa Core Flight System=6.7.0
Event History
Mar 25, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-25373?
CVE-2025-25373 is considered a high severity vulnerability due to the potential for remote code execution.
2
How do I fix CVE-2025-25373?
To mitigate CVE-2025-25373, review and adjust the permissions for the Memory Management Module in NASA cFS Aquila.
3
What components are affected by CVE-2025-25373?
The Memory Management Module of NASA cFS Aquila is specifically affected by CVE-2025-25373.
4
What type of vulnerability is CVE-2025-25373?
CVE-2025-25373 is categorized as a permissions vulnerability that can lead to remote code execution.
5
Who is impacted by CVE-2025-25373?
Organizations using NASA cFS Aquila with the vulnerable Memory Management Module are impacted by CVE-2025-25373.