Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4xgv-j62q-h3rj

Опубликовано: 07 фев. 2023
Источник: github
Github: Прошло ревью
CVSS3: 5.9

Описание

Panic during unmarshal of Hello Verify Request in github.com/pion/dtls/v2

Impact

During the unmarshalling of a hello verify request we could try to unmarshal into too small a buffer. is could result in a panic leading the program to crash.

This issue could be abused to cause a denial of service.

Workaround

None, upgrade to 2.2.4

Пакеты

Наименование

github.com/pion/dtls

go
Затронутые версииВерсия исправления

<= 1.5.4

Отсутствует

Наименование

github.com/pion/dtls/v2

go
Затронутые версииВерсия исправления

< 2.2.4

2.2.4

5.9 Medium

CVSS3

5.9 Medium

CVSS3