CVE-2025-46673PoC(nasa / cryptolib)

LOWCVSS 9.9 · CRITICAL

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Prioritize remediation for nasa cryptolib systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

NASA CryptoLib before 1.3.2 does not check whether the SA is in an operational state before use, possibly leading to a bypass of the Space Data Link Security protocol (SDLS).

3.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-913

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • cryptolib

Threat summary

  • Public PoC and exploit tooling are both present
  • 1 mentions across 1 observed day

What's happening

  • Exploit tool or code specified in 1 signal
  • PoC mentioned or linked in 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
cryptolib

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-01-28: 1PoC Mentioned / Linked · 2026-01-28: 1Exploit Tool / Code · 2026-01-28: 1Technical Details · 2026-01-28: 101-28
Signal classification1 categories
PoC
1100.0%
Referenced assets1 URL
By indicator
Full discourse1 post
  • alex@spookier444
    PoC

    Complete bypass of satellite encryption. One missing validation check = CVE-2025-46673. Uninitialized memory used as a weapon. A "test mode" turned into a backdoor. A billion-dollar satellite compromised by zeros. Full technical analysis + PoC: https://github.com/spookier/NASA-CryptoLib-SDLS-Bypass

    Post summary

    CVE‑2025‑46673 involves a missing validation check that allows a complete bypass of satellite encryption, with a full technical analysis and PoC hosted on GitHub, though no patch or active exploitation has been reported.

    00010117
    62 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appnasacryptolib---

Explore more