Lucene search

K
osvGoogleOSV:CVE-2021-28681
HistoryMar 18, 2021 - 4:15 a.m.

CVE-2021-28681

2021-03-1804:15:14
Google
osv.dev
4

6.7 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

38.8%

Pion WebRTC before 3.0.15 didn’t properly tear down the DTLS Connection when certificate verification failed. The PeerConnectionState was set to failed, but a user could ignore that and continue to use the PeerConnection. )A WebRTC implementation shouldn’t allow the user to continue if verification has failed.)

6.7 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

38.8%

Related for OSV:CVE-2021-28681