← Back

CVE-2022-30273

nvd nist
Published: Jul 26, 2022Modified: Jun 17, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

The Motorola MDLC protocol through 2022-05-02 mishandles message integrity. It supports three security modes: Plain, Legacy Encryption, and New Encryption. In Legacy Encryption mode, traffic is encrypted via the Tiny Encryption Algorithm (TEA) block-cipher in ECB mode. This mode of operation does not offer message integrity and offers reduced confidentiality above the block level, as demonstrated by an ECB Penguin attack against any block ciphers.

Affected (3)

Mdlc
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Version 4.80.0024
Version 4.82.004
Version 4.83.001

References (6)

Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
MitigationThird Party AdvisoryUS Government Resource
Source: cve@mitre.org
Not ApplicableThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
MitigationThird Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Not ApplicableThird Party Advisory

Timeline

No history available yet.