NASA CryptoLib v1.3.0 was discovered to contain an Out-of-Bounds read via the AOS subsystem (crypto_aos.c).
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://github.com/nasa/CryptoLib/issues/268 | issue tracking |
https://visionspace.com/crashing-cryptolib/ | exploit technical description |