CVE-2019-20786

CVE-2019-20786

handleIncomingPacket in conn.go in Pion DTLS before 1.5.2 lacks a check for application data with epoch 0, which allows remote attackers to inject arbitrary unencrypted data after handshake completion.

Source: CVE-2019-20786

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다