CVE-2021-42147

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
24/01/2024
Last modified:
30/05/2025

Description

Buffer over-read vulnerability in the dtls_sha256_update function in Contiki-NG tinyDTLS through master branch 53a0d97 allows remote attackers to cause a denial of service via crafted data packet.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:contiki-ng:tinydtls:2018-08-30:*:*:*:*:*:*:*