Cryptolib
Vendor:
First CVE: Sep 27, 2024 · Active for 1 year
27
Total CVEs
More Total CVEs than 96% of tracked products
9.0
Avg CVEs / Year
Higher CVE frequency than 95% of tracked products
7.8
Avg CVSS
Higher Avg CVSS than 63% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Cryptolib over time
Volume of CVEsAvg CVSS Base Score
First CVE
Sep 27, 2024
21 months ago
Most Recent CVE
Jan 10, 2026
197 days ago
CVE Severity & Scoring
Cryptolib27 CVEs
19%
48%
30%
All CVEs352,719 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local2 (7.4%)
Network25 (92.6%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low24 (88.9%)
High3 (11.1%)
Unknown0 (0.0%)
User Interaction
None26 (96.3%)
Unknown0 (0.0%)
Required1 (3.7%)
Privileges Required
Low5 (18.5%)
High2 (7.4%)
None20 (74.1%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (27 CVEs).
27 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-54878HIGH CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running | Aug 11, 2025 | 8.6 | 30 | NO | NO |
CVE-2025-64096HIGH CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running | Oct 30, 2025 | 8.8 | 29 | NO | NO |
CVE-2025-59534HIGH CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running | Sep 23, 2025 | 7.8 | 28 | NO | NO |
CVE-2025-46674CRITICAL NASA CryptoLib before 1.3.2 uses Extended Procedures that are a Work in Progress (not intended for use during flight), potentially leading to a keystream oracle. | Apr 27, 2025 | 9.9 | 28 | NO | NO |
CVE-2025-30216CRITICAL CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running | Mar 25, 2025 | 9.1 | 28 | NO | NO |
CVE-2025-29911CRITICAL CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running | Mar 17, 2025 | 9.8 | 28 | NO | NO |
CVE-2025-29909CRITICAL CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running | Mar 17, 2025 | 9.8 | 28 | NO | NO |
CVE-2026-21898HIGH CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running | Jan 10, 2026 | 8.2 | 27 | NO | NO |
CVE-2025-46673CRITICAL NASA CryptoLib before 1.3.2 does not check whether the SA is in an operational state before use, possibly leading to a bypass of the Space Data Link Security protocol (SDLS). | Apr 27, 2025 | 9.9 | 27 | NO | NO |
CVE-2025-30356CRITICAL CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running | Apr 1, 2025 | 9.8 | 27 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (27 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (27 CVEs).
Media Mentions
Signals from CVEs in this product scope (27 CVEs).
Top CNAs Publishing CVEs For Cryptolib
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 1.3.0 | 3 | 7.5 | 0.5% | 0 | 0 |