Description
Malformed or out-of-sequence frames at the Aviation Very High Frequency Link Control X.25 layers cause repeated resets which may result in increased workload and reduced situational awareness. This type of attack can be carried out remotely over radio frequency.
Published: 2026-08-07
Score: 6 Medium
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

Malformed or out-of-sequence frames transmitted over the Aviation Very High Frequency Link Control X.25 layer provoke repeated resets of the CPDLC protocol stack, forcing air traffic control personnel to restore services and increasing workload. The resulting disruptions can degrade situational awareness and compromise flight safety. This flaw is identified as a weakness in the handling of session control messages, classified as CWE‑754.

Affected Systems

The affected product is ATN‑B1 CPDLC. No specific version details are provided, so any implementation based on the ATN‑B1 stack may be impacted.

Risk and Exploitability

The CVSS score of 6 indicates a medium severity, while the EPSS score is not available, leaving exploitation probability uncertain. The CVE is not listed in CISA KEV, suggesting no publicly documented exploits at present. The attack vector is remote, occurring over the radio frequency link used by CPDLC, and requires an adversary capable of injecting malformed frames into that line. The vendor’s advisory stresses that the conditions for exploitation are highly specific, making real-world attacks outside of controlled lab environments unlikely.

Generated by OpenCVE AI on August 7, 2026 at 20:38 UTC.

Remediation

Vendor Workaround

These vulnerabilities in the CPDLC protocol stack are exploitable in a lab environment. However, they require very specific conditions to be met and are unlikely to be exploited outside of a lab setting.


OpenCVE Recommended Actions

  • Apply the latest ATN‑B1:CPDLC firmware release that addresses malformed frame handling.
  • If an update is unavailable, implement the vendor‐provided workaround to mitigate resets as described in the advisory.
  • Configure monitoring to detect repeated CPDLC resets and alert operators to potential malicious activity.
  • Document any suspicious activity and report findings to CISA in accordance with established internal procedures.

Generated by OpenCVE AI on August 7, 2026 at 20:38 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 07 Aug 2026 19:15:00 +0000

Type Values Removed Values Added
Description Malformed or out-of-sequence frames at the Aviation Very High Frequency Link Control X.25 layers cause repeated resets which may result in increased workload and reduced situational awareness. This type of attack can be carried out remotely over radio frequency.
Title In CPDLC, Malformed or Out of Sequence Frames Can Cause Resets
Weaknesses CWE-754
References
Metrics cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H'}

cvssV4_0

{'score': 6, 'vector': 'CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2026-08-07T19:00:53.989Z

Reserved: 2026-08-04T20:31:35.645Z

Link: CVE-2025-71413

cve-icon Vulnrichment

No data.

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-07T20:45:03Z

Weaknesses
  • CWE-754

    Improper Check for Unusual or Exceptional Conditions