Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bugfix Release 2.7.3 - Available / Fixes CVE-2022-2576 #2045

Closed
boaks opened this issue Jul 11, 2022 · 2 comments
Closed

Bugfix Release 2.7.3 - Available / Fixes CVE-2022-2576 #2045

boaks opened this issue Jul 11, 2022 · 2 comments

Comments

@boaks
Copy link
Contributor

boaks commented Jul 11, 2022

See 2.7.3 for details.

@boaks boaks changed the title New Bugfix Release 2.73 - Scheduled for Wednesday, 13. July, 2022 New Bugfix Release 2.7.3 - Scheduled for Wednesday, 13. July, 2022 Jul 11, 2022
@boaks boaks pinned this issue Jul 11, 2022
@boaks boaks changed the title New Bugfix Release 2.7.3 - Scheduled for Wednesday, 13. July, 2022 Bugfix Release 2.7.3 - Scheduled for Wednesday, 13. July, 2022 Jul 11, 2022
@boaks boaks changed the title Bugfix Release 2.7.3 - Scheduled for Wednesday, 13. July, 2022 Release 2.7.3 - Available Jul 13, 2022
@boaks
Copy link
Contributor Author

boaks commented Jul 13, 2022

The 2.7.3 bugfix release is available on Maven Central and the Eclipse Repository. The tools and actinium are not released for 2.7.3, please use the current 3.5.0 release of them.

@boaks boaks changed the title Release 2.7.3 - Available Bugfix Release 2.7.3 - Available Jul 14, 2022
@boaks boaks changed the title Bugfix Release 2.7.3 - Available Bugfix Release 2.7.3 - Available / Fixes CVE-2022-2576 Aug 1, 2022
@boaks
Copy link
Contributor Author

boaks commented Aug 1, 2022

❗❗❗ Important Note: ❗❗❗

This bugfix is required for all users of Californium 2.0.0 - 2.7.2,
which are using DTLS resumption and DTLS_VERIFY_PEERS_ON_RESUMPTION_THRESHOLD values larger than 0!
It provides the fix for

CVE-2022-2576

@boaks boaks unpinned this issue Sep 19, 2022
@boaks boaks closed this as completed Sep 23, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant