Vulnerabilities > Midnightblue > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-12-05 CVE-2022-24403 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Midnightblue Tetra:Burst
The TETRA TA61 identity encryption function internally uses a 64-bit value derived exclusively from the SCK (Class 2 networks) or CCK (Class 3 networks).
low complexity
midnightblue CWE-327
4.3
2023-10-19 CVE-2022-24400 Authorization Bypass Through User-Controlled Key vulnerability in Midnightblue Tetra:Burst
A flaw in the TETRA authentication procecure allows a MITM adversary that can predict the MS challenge RAND2 to set session key DCK to zero.
high complexity
midnightblue CWE-639
5.9