VYPR
Critical severity9.8NVD Advisory· Published Jan 24, 2024· Updated Jun 17, 2026

CVE-2021-42144

CVE-2021-42144

Description

Buffer over-read vulnerability in Contiki-NG tinyDTLS through master branch 53a0d97 allows attackers obtain sensitive information via crafted input to dtls_ccm_decrypt_message().

Affected products

3
  • Contiki-NG/tinyDTLSdescription
  • Xwiki Contrib/tinyDTLSllm-create2 versions
    <53a0d97+ 1 more
    • (no CPE)range: <53a0d97
    • cpe:2.3:o:contiki-ng:contiki-ng_tinydtls:*:*:*:*:*:*:*:*range: <=2018-08-30

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.