Search CVE reports


Toggle filters

1 – 3 of 3 results


CVE-2022-29222

Medium priority

Some fixes available 2 of 10

Pion DTLS is a Go implementation of Datagram Transport Layer Security. Prior to version 2.1.5, a DTLS Client could provide a Certificate that it doesn't posses the private key for and Pion DTLS wouldn't reject it. This issue...

3 affected packages

snowflake, telegraf, pion

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
snowflake Not affected Not affected Fixed
telegraf Not in release Not in release Fixed
pion Not affected
Show less packages

CVE-2022-29190

Medium priority

Some fixes available 2 of 10

Pion DTLS is a Go implementation of Datagram Transport Layer Security. Prior to version 2.1.4, an attacker can send packets that sends Pion DTLS into an infinite loop when processing. Version 2.1.4 contains a patch for this issue....

3 affected packages

snowflake, telegraf, pion

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
snowflake Not affected Not affected Fixed
telegraf Not in release Not in release Fixed
pion Not affected
Show less packages

CVE-2022-29189

Medium priority

Some fixes available 2 of 10

Pion DTLS is a Go implementation of Datagram Transport Layer Security. Prior to version 2.1.4, a buffer that was used for inbound network traffic had no upper limit. Pion DTLS would buffer all network traffic from the remote user...

3 affected packages

snowflake, telegraf, pion

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
snowflake Not affected Not affected Fixed
telegraf Not in release Not in release Fixed
pion Not affected
Show less packages