CVE-2026-22027 | NASA CryptoLib up to 1.4.2 Link Security Protocol convert_hexstring_to_byte_array IV/ARSN/ABM heap-based overflow (GHSA-3m35-m689-h29x)

SecurityVulns

A vulnerability categorized as critical has been discovered in NASA CryptoLib up to 1.4.2. This impacts the function convert_hexstring_to_byte_array of the component Link Security Protocol. The manipulation of the argument IV/ARSN/ABM results in heap-based buffer overflow.

This vulnerability is cataloged as CVE-2026-22027. The attack must be initiated from a local position. There is no exploit available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More