Vulnerabilities (CVE)

Filtered by vendor Pion Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-20786 1 Pion 1 Dtls 2020-04-23 7.5 HIGH 9.8 CRITICAL
handleIncomingPacket in conn.go in Pion DTLS before 1.5.2 lacks a check for application data with epoch 0, which allows remote attackers to inject arbitrary unencrypted data after handshake completion.