- Contiki-NG tinyDTLS Denial Of Service
- Posted Jan 18, 2024
- Authored by jerrytesting
An issue was discovered in Contiki-NG tinyDTLS versions through 2018-08-30. DTLS servers mishandle the early use of a large epoch number. This vulnerability allows remote attackers to cause a denial of service and false-positive packet drops.
- tags | advisory, remote, denial of service
- advisories | CVE-2021-42142
- SHA-256 |
e1244689736de9338e92f0ce31592afd33da836f554ad8dfaf50a9775596ca5b
- Download | Favorite | View
About CVE-2021-42142:[Suggested description]
An issue was discovered in Contiki-NG tinyDTLS through 2018-08-30. DTLS servers mishandle the early use of a large epoch number. This vulnerability allows remote attackers to cause a denial of service and false-positive packet drops.
[VulnerabilityType Other]
Improper Handling of exception conditions
[Vendor of Product]
https://github.com/contiki-ng/tinydtls
[Affected Product Code Base]
contiki-ng tinydtls - master branch 53a0d97
[Affected Component]
the service of dtls servers
[Attack Type]
Remote
[Impact Code execution]
true
[Impact Denial of Service]
true
[Impact Information Disclosure]
true
[Reference]
https://github.com/contiki-ng/tinydtls/issues/24
[Discoverer]
jerrytesting
File Tags
- ActiveX (932)
- Advisory (83,788)
- Arbitrary (16,482)
- BBS (2,859)
- Bypass (1,805)
- CGI (1,031)
- Code Execution (7,499)
- Conference (685)
- Cracker (843)
- CSRF (3,365)
- DoS (24,175)
- Encryption (2,375)
- Exploit (52,417)
- File Inclusion (4,239)
- File Upload (982)
- Firewall (822)
- Info Disclosure (2,818)
- Intrusion Detection (900)
- Java (3,109)
- JavaScript (883)
- Kernel (6,880)
- Local (14,614)
- Magazine (586)
- Overflow (12,923)
- Perl (1,428)
- PHP (5,165)
- Proof of Concept (2,357)
- Protocol (3,673)
- Python (1,579)
- Remote (31,159)
- Root (3,609)
- Rootkit (517)
- Ruby (614)
- Scanner (1,646)
- Security Tool (7,942)
- Shell (3,221)
- Shellcode (1,216)
- Sniffer (898)
- Spoof (2,233)
- SQL Injection (16,464)
- TCP (2,420)
- Trojan (687)
- UDP (896)
- Virus (667)
- Vulnerability (32,282)
- Web (9,806)
- Whitepaper (3,763)
- x86 (966)
- XSS (18,086)
- Other
Systems
- AIX (429)
- Apple (2,049)
- BSD (375)
- CentOS (57)
- Cisco (1,926)
- Debian (6,946)
- Fedora (1,693)
- FreeBSD (1,246)
- Gentoo (4,421)
- HPUX (880)
- iOS (366)
- iPhone (108)
- IRIX (220)
- Juniper (69)
- Linux (48,245)
- Mac OS X (691)
- Mandriva (3,105)
- NetBSD (256)
- OpenBSD (487)
- RedHat (14,857)
- Slackware (941)
- Solaris (1,611)
- SUSE (1,444)
- Ubuntu (9,221)
- UNIX (9,353)
- UnixWare (187)
- Windows (6,619)
- Other
文章来源: https://packetstormsecurity.com/files/176626/cngtinydtls-dos.txt
如有侵权请联系:admin#unsafe.sh