CVE-2025-71412

LOWCVSS 7.1 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Injection of false emergency or status messages over CPDLC may lead to misallocation of resources, operational confusion, and improper response actions by flight crews, traffic controllers, and ground operations. This type of attack can be carried out remotely over radio frequency.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-754

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • 1 total mentions across 1 day

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-09-29: 109-29
Full discourse1 post
  • DFIR Lab@DFIR_Lab

    🚨 HIGH: CVE-2025-71412 (CVSS 7.1) - Aviation CPDLC systems vulnerable to false emergency message injection. Remote RF attacks can cause operational confusion, resource misallocation & improper crew response. #CVE #Aviation #CyberSecurity https://t.co/lUs5F6Vahf

    0000018
    141 followersView on X

Explore more