Bug 2537080 (CVE-2026-84782) - CVE-2026-84782 openssl: compat-openssl: DTLS Retransmits Handshake Messages From a Stale Buffer Offset
Summary: CVE-2026-84782 openssl: compat-openssl: DTLS Retransmits Handshake Messages F...
Keywords:
Status: NEW
Alias: CVE-2026-84782
Deadline: 2026-09-29
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
high
high
Target Milestone: ---
Assignee: Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 2543666 2543670 2543672 2543674 2543675 2543677 2543679 2543680 2543681 2543687 2543688 2543689 2543690 2543691 2543692 2543693 2543694 2543695 2543696 2543697 2543698 2543699 2543700 2543701 2543702 2543703 2543704 2543705 2543706 2543707 2543708 2543709 2543710 2543711 2543712 2543713 2543714 2543715 2543716 2543717 2543718 2543719 2543720 2543721 2543722 2543667 2543723
Blocks:
TreeView+ depends on / blocked
 
Reported: 2026-09-18 20:03 UTC by OSIDB Bzimport
Modified: 2026-09-29 21:48 UTC (History)
7 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2026-09-18 20:03:31 UTC
The DTLS retransmission logic does not correctly handle a handshake message write that is suspended part-way through.
The retransmitted message can be read past the message buffer and the retransmission overwrites the internal state the suspended write needs to resume correctly.


Note You need to log in before you can comment on or make changes to this bug.