CVE-2017-9649

A Use of Hard-Coded Cryptographic Key issue was discovered in Mirion Technologies DMC 3000 Transmitter Module, iPam Transmitter f/DMC 2000, RDS-31 iTX and variants (including RSD31-AM Package), DRM-1/2 and variants (including Solar PWR Package), DRM and RDS Based Boundary Monitors, External Transmitters, Telepole II, and MESH Repeater (Telemetry Enabled Devices). An unchangeable, factory-set key is included in the 900 MHz transmitter firmware.
References
Link Resource
http://www.securityfocus.com/bid/100001 Third Party Advisory VDB Entry
https://ics-cert.us-cert.gov/advisories/ICSA-17-208-02 Mitigation Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:mirion_technologies:dmc_3000_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mirion_technologies:dmc_3000:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:mirion_technologies:ipam_transmitter_f\/dmc_2000_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mirion_technologies:ipam_transmitter_f\/dmc_2000:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:mirion_technologies:telepole_ii_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mirion_technologies:telepole_ii:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:mirion_technologies:rds-31_itx_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mirion_technologies:rds-31_itx:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:mirion_technologies:rsd31-am_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mirion_technologies:rsd31-am:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:mirion_technologies:wrm2_mesh_repeater_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mirion_technologies:wrm2_mesh_repeater:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:mirion_technologies:drm-1\/2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:mirion_technologies:drm-1\/2:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-09-20 16:29

Updated : 2024-02-04 19:29


NVD link : CVE-2017-9649

Mitre link : CVE-2017-9649

CVE.ORG link : CVE-2017-9649


JSON object : View

Products Affected

mirion_technologies

  • wrm2_mesh_repeater_firmware
  • telepole_ii
  • rsd31-am_firmware
  • rsd31-am
  • ipam_transmitter_f\/dmc_2000_firmware
  • wrm2_mesh_repeater
  • dmc_3000_firmware
  • ipam_transmitter_f\/dmc_2000
  • drm-1\/2
  • telepole_ii_firmware
  • drm-1\/2_firmware
  • rds-31_itx
  • dmc_3000
  • rds-31_itx_firmware
CWE
CWE-798

Use of Hard-coded Credentials

CWE-321

Use of Hard-coded Cryptographic Key