VYPR
Critical severity9.1NVD Advisory· Published Jan 24, 2024· Updated Jun 17, 2026

CVE-2021-42147

CVE-2021-42147

Description

Buffer over-read vulnerability in the dtls_sha256_update function in Contiki-NG tinyDTLS through master branch 53a0d97 allows remote attackers to cause a denial of service via crafted data packet.

Affected products

3
  • Contiki-NG/tinyDTLSdescription
  • Xwiki Contrib/tinyDTLSllm-create2 versions
    <53a0d97+ 1 more
    • (no CPE)range: <53a0d97
    • cpe:2.3:a:contiki-ng:tinydtls:2018-08-30:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.