Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2021-42147


Buffer over-read vulnerability in the dtls_sha256_update function in Contiki-NG tinyDTLS through master branch 53a0d97 allows remote attackers to cause a denial of service via crafted data packet.


Published

2024-01-24T19:15:08.530

Last Modified

2025-05-30T15:15:21.493

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.1 (CRITICAL)

Weaknesses
  • Type: Primary
    CWE-125
  • Type: Secondary
    CWE-125

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application contiki-ng tinydtls 2018-08-30 Yes

References