pion kayıtları
pion üreticisine ait 5 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')1
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-287 Improper Authentication1
- CWE-295 Improper Certificate Validation1
- CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
5 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2019-20786İstismar yok | handleIncomingPacket in conn.go in Pion DTLS before 1.5.2 lacks a check for application data with epoch 0, which allows remote attackers to pion · dtls · CWE-287 | Kritik9,8 | — | %3,0 | 19 Nis 2020 |
31İzleyin | CVE-2022-29190İstismar yok | Header reconstruction method can be thrown into an infinite loop in Pion DTLSpion · dtls · CWE-835 | Yüksek7,5 | — | %1,7 | 20 May 2022 |
30İzleyin | CVE-2022-29222İstismar yok | Improper Certificate Validation in Pion DTLSpion · dtls · CWE-295 | Yüksek7,5 | — | %0,8 | 20 May 2022 |
23İzleyin | CVE-2026-26014İstismar yok | Pion DTLS uses random nonce generation with AES GCM ciphers risks leaking the authentication keypion · dtls · CWE-200 | Orta5,9 | — | %0,7 | 11 Şub 2026 |
22İzleyin | CVE-2022-29189İstismar yok | Buffer for inbound DTLS fragments has no limitpion · dtls · CWE-120 | Orta5,3 | — | %2,1 | 20 May 2022 |
- CVE-2019-2078640Planlayın
handleIncomingPacket in conn.go in Pion DTLS before 1.5.2 lacks a check for application data with epoch 0, which allows remote attackers to
KritikCVSS 9,8İstismar yokEPSS %3pion · dtls19 Nis 2020
- CVE-2022-2919031İzleyin
Header reconstruction method can be thrown into an infinite loop in Pion DTLS
YüksekCVSS 7,5İstismar yokEPSS %2pion · dtls20 May 2022
- CVE-2022-2922230İzleyin
Improper Certificate Validation in Pion DTLS
YüksekCVSS 7,5İstismar yokEPSS %1pion · dtls20 May 2022
- CVE-2026-2601423İzleyin
Pion DTLS uses random nonce generation with AES GCM ciphers risks leaking the authentication key
OrtaCVSS 5,9İstismar yokEPSS %1pion · dtls11 Şub 2026
- CVE-2022-2918922İzleyin
Buffer for inbound DTLS fragments has no limit
OrtaCVSS 5,3İstismar yokEPSS %2pion · dtls20 May 2022