Improper Authenication in Pion DTLS
Critical severity
GitHub Reviewed
Published
Jun 29, 2021
to the GitHub Advisory Database
•
Updated Feb 14, 2023
Description
Reviewed
May 25, 2021
Published to the GitHub Advisory Database
Jun 29, 2021
Last updated
Feb 14, 2023
handleIncomingPacket in conn.go in Pion DTLS before 1.5.2 lacks a check for application data with epoch 0, which allows remote attackers to inject arbitrary unencrypted data after handshake completion.
References