Memory Allocation Vulnerability in NASA's ION-DTN Product
CVE-2025-61910
What is CVE-2025-61910?
A vulnerability in NASA's Interplanetary Overlay Network (ION) product arises from improper handling of a malformed BPv7 bundle's extension block. This flaw can lead to uncontrolled memory allocation, resulting in termination of the receiver thread and a Denial-of-Service (DoS). Specifically, the bug occurs when a byte string in the extension block is processed incorrectly, causing excessive memory requests. The core issue relates to an improper unsigned to signed integer conversion that generates a massive allocation request, overwhelming system resources. Currently, there are no known patched versions to mitigate this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
ION-DTN = 4.1.3s
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
