CVE-2026-54887
Microsoft · Published August 14, 2026
4.8
CVSS v3.1
MEDIUMPatch availableGet patch
Description
DTLS server cookie bypass during startup window due to empty initial cookie secret. DTLS server cookie bypass during startup window due to empty initial cookie secret
Affected Products
- azl3 erlang 26.2.5.21-4 on Azure Linux 3.0
CVSS Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N