Search CVE reports


Toggle filters

1 – 3 of 3 results


CVE-2022-29222

Medium priority

Some fixes available 2 of 10

Pion DTLS is a Go implementation of Datagram Transport Layer Security. Prior to version 2.1.5, a DTLS Client could provide a Certificate that it doesn't posses the private key for and Pion DTLS wouldn't reject it. This issue...

3 affected packages

pion, snowflake, telegraf

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pion — — — — Not affected
snowflake Not affected Not affected Fixed — —
telegraf Not in release Not in release Fixed — —
Show less packages

CVE-2022-29190

Medium priority

Some fixes available 2 of 10

Pion DTLS is a Go implementation of Datagram Transport Layer Security. Prior to version 2.1.4, an attacker can send packets that sends Pion DTLS into an infinite loop when processing. Version 2.1.4 contains a patch for this issue....

3 affected packages

pion, snowflake, telegraf

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pion — — — — Not affected
snowflake Not affected Not affected Fixed — —
telegraf Not in release Not in release Fixed — —
Show less packages

CVE-2022-29189

Medium priority

Some fixes available 2 of 10

Pion DTLS is a Go implementation of Datagram Transport Layer Security. Prior to version 2.1.4, a buffer that was used for inbound network traffic had no upper limit. Pion DTLS would buffer all network traffic from the remote user...

3 affected packages

pion, snowflake, telegraf

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
pion — — — — Not affected
snowflake Not affected Not affected Fixed — —
telegraf Not in release Not in release Fixed — —
Show less packages