CyberICT

CVE-2026-54887

Microsoft · Published August 14, 2026

CVSS v3.1

MEDIUM
Patch availableGet patch

Description

DTLS server cookie bypass during startup window due to empty initial cookie secret. DTLS server cookie bypass during startup window due to empty initial cookie secret

Affected Products

  • azl3 erlang 26.2.5.21-4 on Azure Linux 3.0

CVSS Vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N