Denial of Service Vulnerability in Eclipse Californium by Eclipse
CVE-2020-27222
What is CVE-2020-27222?
A vulnerability in Eclipse Californium versions 2.3.0 to 2.6.0 allows a Denial of Service (DoS) condition due to a failure in the certificate-based DTLS handshake process. The issue arises because the DTLS server maintains an erroneous internal state following a failed handshake due to a mismatch in TLS parameters. Consequently, clients can exploit this failure to force the DTLS server into a DoS state, necessitating a restart for recovery. Proper updates and mitigations are essential to protect against this security threat.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Eclipse Californium [2.3.0, 2.6.0]
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
