CVE-2021-42146

7.5HIGH

An issue was discovered in Contiki-NG tinyDTLS through master branch 53a0d97. DTLS servers allow remote attackers to reuse the same epoch number within two times the TCP maximum segment lifetime, whic

Publicado: 1/24/2024Atualizado: 6/20/2025

Descrição

An issue was discovered in Contiki-NG tinyDTLS through master branch 53a0d97. DTLS servers allow remote attackers to reuse the same epoch number within two times the TCP maximum segment lifetime, which is prohibited in RFC6347. This vulnerability allows remote attackers to obtain sensitive application (data of connected clients).

Análise IADesenvolvido por IA

Produtos Afetados

contiki-ngtinydtls
2018-08-30

Referências