The goTenna Pro ATAK Plugin does not inject extra characters into
broadcasted frames to obfuscate the length of messages. This makes it
possible to tell the length of the payload regardless of the encryption
used.
Metrics
Affected Vendors & Products
References
History
Thu, 17 Oct 2024 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | The goTenna Pro ATAK Plugin has a payload length vulnerability that makes it possible to tell the length of the payload regardless of the encryption used. | The goTenna Pro ATAK Plugin does not inject extra characters into broadcasted frames to obfuscate the length of messages. This makes it possible to tell the length of the payload regardless of the encryption used. |
Sat, 05 Oct 2024 02:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Gotenna
Gotenna atak Plugin |
|
Weaknesses | CWE-203 | |
CPEs | cpe:2.3:a:gotenna:atak_plugin:*:*:*:*:*:*:*:* | |
Vendors & Products |
Gotenna
Gotenna atak Plugin |
Thu, 26 Sep 2024 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 26 Sep 2024 18:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | The goTenna Pro ATAK Plugin has a payload length vulnerability that makes it possible to tell the length of the payload regardless of the encryption used. | |
Title | goTenna Pro ATAK Plugin Observable Response Discrepancy | |
Weaknesses | CWE-204 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2024-09-26T17:46:05.011Z
Updated: 2024-10-17T17:03:47.283Z
Reserved: 2024-09-24T14:22:20.149Z
Link: CVE-2024-41715
Vulnrichment
Updated: 2024-09-26T18:19:43.636Z
NVD
Status : Modified
Published: 2024-09-26T18:15:05.950
Modified: 2024-10-17T17:15:11.530
Link: CVE-2024-41715
Redhat
No data.