CVE-2026-22026

HIGH

CryptoLib < 1.4.3 - Denial of Service via Unbounded Memory Allocation in KMC Client

Title source: llm
STIX 2.1

Description

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running the core Flight System (cFS) and a ground station. Prior to version 1.4.3, the libcurl write_callback function in the KMC crypto service client allows unbounded memory growth by reallocating response buffers without any size limit or overflow check. A malicious KMC server can return arbitrarily large HTTP responses, forcing the client to allocate excessive memory until the process is terminated by the OS. This issue has been patched in version 1.4.3.

Scores

CVSS v3 7.5
EPSS 0.0054
EPSS Percentile 40.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-789
Status published
Products (1)
nasa/cryptolib < 1.4.3
Published Jan 10, 2026
Tracked Since Feb 18, 2026