CVE-2025-29912 | NASA CryptoLib up to 1.3.3 Crypto_TC_ProcessSecurity fl heap-based overflow (GHSA-3f5x-r59x-p8cf)
A vulnerability was found in NASA CryptoLib up to 1.3.3. It has been declared as very critical. This vulnerability affects the function Crypto_TC_ProcessSecurity. The manipulation of the argument fl leads to heap-based buffer overflow.
This vulnerability was named CVE-2025-29912. The attack can be initiated remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.