CVE-2021-42141: Critical severity Contiki-NG tinyDTLS vulnerability
An issue was discovered in Contiki-NG tinyDTLS through 2018-08-30. One incorrect handshake could complete with different epoch numbers in the packets ClientHello, Clientkeyexchange, and Changecipherspec, which may cause denial of service.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2021-42141?
CVE-2021-42141 has a low severity level as it can lead to denial of service under specific conditions.
How do I fix CVE-2021-42141?
To fix CVE-2021-42141, ensure you update to a version of Contiki-NG tinyDTLS released after August 30, 2018, that addresses this vulnerability.
What software is affected by CVE-2021-42141?
CVE-2021-42141 affects Contiki-NG tinyDTLS versions up to and including August 30, 2018.
What can happen if CVE-2021-42141 is exploited?
Exploitation of CVE-2021-42141 can result in a denial of service, disrupting the intended operation of affected applications.
Has CVE-2021-42141 been publicly disclosed?
Yes, CVE-2021-42141 has been publicly disclosed and is documented in various security reports and discussions.