ARRL's vulnerability footprint centers on TQSLlib, a specialized authentication library for amateur radio operators, representing a narrow but functionally critical component within the amateur radio ecosystem. The observed weakness class involves improper authentication mechanisms, reflecting the library's role in validating credentials for radio contest logging and license-related digital interactions. Current CVE counts, severity distribution, and exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Arrl over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-0124MEDIUM The tqsl_verifyDataBlock function in openssl_cert.cpp in American Radio Relay League (ARRL) tqsllib 2.0 does not properly check the return value from the OpenSSL EVP_VerifyFinal fu | Jan 15, 2009 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Arrl.
Media articles that mention a CVE ID that affects a product developed by Arrl — matched by CVE ID, not by vendor name.