#VU66879 Input validation error in wolfSSL
Published: August 31, 2022
wolfSSL
wolfSSL
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input in DTLS 1.2 implementation. A remote attacker can send a malicious plaintext handshake message at epoch 0 and perform a denial of service (DoS) attack. The vulnerability affects both server and client side.