CVE-2025-25373

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Mar 25, 2025
Updated: Apr 3, 2025
CWE ID 732

Summary

CVE-2025-25373 is a vulnerability affecting the Memory Management Module of NASA's cFS (Core Flight System) Aquila. Insecure permissions in this module present an opportunity for attackers to gain Remote Code Execution (RCE) access on the platform. This vulnerability could potentially allow unauthorized individuals to take control of critical flight systems, posing a significant risk to space missions. The precise exploitation method requires further investigation, but the potential consequences are severe. NASA is advised to address this vulnerability promptly to minimize potential risks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share