First published: Mon Jan 22 2024(Updated: )
An issue was discovered in Contiki-NG tinyDTLS through 2018-08-30. One incorrect handshake could complete with different epoch numbers in the packets Client_Hello, Client_key_exchange, and Change_cipher_spec, which may cause denial of service.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Contiki-NG | <=2018-08-30 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-42141 has a low severity level as it can lead to denial of service under specific conditions.
To fix CVE-2021-42141, ensure you update to a version of Contiki-NG tinyDTLS released after August 30, 2018, that addresses this vulnerability.
CVE-2021-42141 affects Contiki-NG tinyDTLS versions up to and including August 30, 2018.
Exploitation of CVE-2021-42141 can result in a denial of service, disrupting the intended operation of affected applications.
Yes, CVE-2021-42141 has been publicly disclosed and is documented in various security reports and discussions.