Résumé
Pion DTLS vulnerable to denial of service via panic while parsing a crafted ECDHE_PSK ServerKeyExchange message
Détails de l’avis
Impact
Remote denial of service via panic while parsing a crafted ECDHE_PSK ServerKeyExchange message.
Patches
Upgrade to v3.1.4 or later. This version includes this patch https://github.com/pion/dtls/pull/839 which fixes the issue.
Workarounds
No work around; please upgrade to v3.1.4 or a newer version.
Références
- https://github.com/advisories/GHSA-wg4g-wm44-ch5j
- https://github.com/pion/dtls/security/advisories/GHSA-wg4g-wm44-ch5j
- https://nvd.nist.gov/vuln/detail/CVE-2026-54908
- https://github.com/pion/dtls/pull/839
- https://github.com/pion/dtls/commit/49458d604a4f3ebce1bf9587a0f3e5f3f6b4a55e
- https://github.com/pion/dtls/releases/tag/v3.1.3
Vulnérabilités liées
Tout Supply chain →- MEDIUMGHSA-3gjw-f78c-vvpw
tokio-postgres: Panic on a `DataRow` with fewer fields than columns allows denial of service
- CRITICALCVE-2026-55211
surfio has an out-of-bounds read
- CRITICALCVE-2026-55209
resdata has Classic Buffer Overflow, Improper Validation of Array Index, NULL Pointer Dereference and Out-of-bounds Read
- HIGHGHSA-jwjp-4649-v8jp
SIPSorcery vulnerable to Denial of Service via out-of-bounds read in SCTP SACK chunk parsing
- MEDIUMCVE-2026-71498
node-re2: Out-of-bounds heap read in `replace`/`split` via a `Buffer` ending in a truncated multi-byte UTF-8 character → adjacent heap memory disclosed to JavaScript
- HIGHCVE-2026-69244
AIOHTTP: Out-of-bounds heap read in C HTTP response parser error path (malformed chunked response)