๐Ÿ” CVE Alert

CVE-2022-26943

HIGH 8.8

Weak PRNG entropy source used for authentication challenge generation in Motorola MTM5000

CVSS Score
8.8
EPSS Score
0.0%
EPSS Percentile
0th

The Motorola MTM5000 series firmwares generate TETRA authentication challenges using a PRNG using a tick count register as its sole entropy source. Low boottime entropy and limited re-seeding of the pool renders the authentication challenge vulnerable to two attacks. First, due to the limited boottime pool entropy, an adversary can derive the contents of the entropy pool by an exhaustive search of possible values, based on an observed authentication challenge. Second, an adversary can use knowledge of the entropy pool to predict authentication challenges. As such, the unit is vulnerable to CVE-2022-24400.

CWE CWE-338
Vendor motorola
Product mobile radio
Published Oct 19, 2023
Last Updated Aug 3, 2024
Stay Ahead of the Next One

Get instant alerts for motorola mobile radio

Be the first to know when new high vulnerabilities affecting motorola mobile radio are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:F/RL:U/RC:C/CR:H/IR:H/AR:H/MAV:A/MAC:L/MPR:N/MUI:N/MS:U/MC:H/MI:H/MA:H
Attack Vector
Adjacent
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High

Affected Versions

Motorola / Mobile Radio
MTM5000

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
tetraburst.com: https://tetraburst.com/

Credits

Midnight Blue