Header reconstruction method can be thrown into an infinite loop in Pion DTLS
Vulnerability Description
Pion DTLS is a Go implementation of Datagram Transport Layer Security. Prior to version 2.1.4, an attacker can send packets that sends Pion DTLS into an infinite loop when processing. Version 2.1.4 contains a patch for this issue. There are currently no known workarounds available.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-29190
Credits & Attribution
No credits recorded in the NVD database.
References
More from pion
View All →Affected Vendor
pion
View all reports →