Vulnerabilities (CVE)

Filtered by vendor Eclipse Subscribe
Filtered by product Tinydtls
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-34430 1 Eclipse 1 Tinydtls 2023-12-10 5.0 MEDIUM 7.5 HIGH
Eclipse TinyDTLS through 0.9-rc1 relies on the rand function in the C library, which makes it easier for remote attackers to compute the master key and then decrypt DTLS traffic.
CVE-2017-7243 1 Eclipse 1 Tinydtls 2023-12-10 5.0 MEDIUM 7.5 HIGH
Eclipse tinydtls 0.8.2 for Eclipse IoT allows remote attackers to cause a denial of service (DTLS peer crash) by sending a "Change cipher spec" packet without pre-handshake.