Vulnerability Details CVE-2026-75806
Issue summary: An established DTLS 1.2 association using an AEAD cipher suite
can be terminated by a single unauthenticated datagram whose encrypted
fragment is shorter than the mandatory explicit IV and authentication tag
overhead.
Impact summary: An attacker who can send a datagram that is routed to an
existing DTLS 1.2 association can tear that association down without knowing
any key material. This is a Denial of Service limited to the targeted
association. There is no memory safety or confidentiality impact.
CWE: CWE-1284: Improper Validation of Specified Quantity in Input
Description: In TLS 1.2 and DTLS 1.2 every record protected by an AEAD cipher
suite carries an explicit IV followed by the ciphertext and an authentication
tag. When decrypting such a record the record layer passed the record length to
the cipher implementation before checking that the record was long enough to
contain the explicit IV and the tag. For a record shorter than that overhead the
cipher implementation rejected the impossible length, and the record layer
treated this as an internal failure and raised a fatal internal_error alert
instead of treating the record as one that failed authentication.
In TLS 1.2 the same record causes a fatal internal_error alert instead of the
expected bad_record_mac alert. Since any undecryptable record already
terminates a TLS connection, this is a protocol conformance issue rather than
a security issue in TLS.
The fix validates the record length against the explicit IV and tag length
before any AEAD processing, so that TLS reports bad_record_mac and DTLS
silently discards the record.
FIPS impact: no
The affected code is outside the FIPS module boundary.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 30.6%
CVSS Severity
CVSS v3 Score 5.3
Products affected by CVE-2026-75806
-
cpe:2.3:a:openssl:openssl:1.1.1
-
cpe:2.3:a:openssl:openssl:1.1.1a
-
cpe:2.3:a:openssl:openssl:1.1.1b
-
cpe:2.3:a:openssl:openssl:1.1.1c
-
cpe:2.3:a:openssl:openssl:1.1.1d
-
cpe:2.3:a:openssl:openssl:1.1.1e
-
cpe:2.3:a:openssl:openssl:1.1.1f
-
cpe:2.3:a:openssl:openssl:1.1.1g
-
cpe:2.3:a:openssl:openssl:1.1.1h
-
cpe:2.3:a:openssl:openssl:1.1.1i
-
cpe:2.3:a:openssl:openssl:1.1.1j
-
cpe:2.3:a:openssl:openssl:1.1.1k
-
cpe:2.3:a:openssl:openssl:1.1.1l
-
cpe:2.3:a:openssl:openssl:1.1.1m
-
cpe:2.3:a:openssl:openssl:1.1.1n
-
cpe:2.3:a:openssl:openssl:1.1.1o
-
cpe:2.3:a:openssl:openssl:1.1.1p
-
cpe:2.3:a:openssl:openssl:1.1.1q
-
cpe:2.3:a:openssl:openssl:1.1.1r
-
cpe:2.3:a:openssl:openssl:1.1.1s
-
cpe:2.3:a:openssl:openssl:1.1.1t
-
cpe:2.3:a:openssl:openssl:1.1.1u
-
cpe:2.3:a:openssl:openssl:1.1.1v
-
cpe:2.3:a:openssl:openssl:1.1.1w
-
cpe:2.3:a:openssl:openssl:1.1.1x
-
cpe:2.3:a:openssl:openssl:1.1.1ze
-
cpe:2.3:a:openssl:openssl:1.1.1zg
-
cpe:2.3:a:openssl:openssl:1.1.1zh
-
cpe:2.3:a:openssl:openssl:3.0.0
-
cpe:2.3:a:openssl:openssl:3.0.1
-
cpe:2.3:a:openssl:openssl:3.0.10
-
cpe:2.3:a:openssl:openssl:3.0.11
-
cpe:2.3:a:openssl:openssl:3.0.12
-
cpe:2.3:a:openssl:openssl:3.0.13
-
cpe:2.3:a:openssl:openssl:3.0.14
-
cpe:2.3:a:openssl:openssl:3.0.15
-
cpe:2.3:a:openssl:openssl:3.0.19
-
cpe:2.3:a:openssl:openssl:3.0.2
-
cpe:2.3:a:openssl:openssl:3.0.20
-
cpe:2.3:a:openssl:openssl:3.0.21
-
cpe:2.3:a:openssl:openssl:3.0.22
-
cpe:2.3:a:openssl:openssl:3.0.3
-
cpe:2.3:a:openssl:openssl:3.0.4
-
cpe:2.3:a:openssl:openssl:3.0.5
-
cpe:2.3:a:openssl:openssl:3.0.6
-
cpe:2.3:a:openssl:openssl:3.0.7
-
cpe:2.3:a:openssl:openssl:3.0.8
-
cpe:2.3:a:openssl:openssl:3.0.9
-
cpe:2.3:a:openssl:openssl:3.4.0
-
cpe:2.3:a:openssl:openssl:3.4.1
-
cpe:2.3:a:openssl:openssl:3.4.2
-
cpe:2.3:a:openssl:openssl:3.4.3
-
cpe:2.3:a:openssl:openssl:3.4.4
-
cpe:2.3:a:openssl:openssl:3.4.5
-
cpe:2.3:a:openssl:openssl:3.4.6
-
cpe:2.3:a:openssl:openssl:3.4.7
-
cpe:2.3:a:openssl:openssl:3.5.0
-
cpe:2.3:a:openssl:openssl:3.5.1
-
cpe:2.3:a:openssl:openssl:3.5.2
-
cpe:2.3:a:openssl:openssl:3.5.3
-
cpe:2.3:a:openssl:openssl:3.5.4
-
cpe:2.3:a:openssl:openssl:3.5.5
-
cpe:2.3:a:openssl:openssl:3.5.6
-
cpe:2.3:a:openssl:openssl:3.5.7
-
cpe:2.3:a:openssl:openssl:3.5.8
-
cpe:2.3:a:openssl:openssl:3.6.0
-
cpe:2.3:a:openssl:openssl:3.6.1
-
cpe:2.3:a:openssl:openssl:3.6.2
-
cpe:2.3:a:openssl:openssl:3.6.3
-
cpe:2.3:a:openssl:openssl:3.6.4
-
cpe:2.3:a:openssl:openssl:4.0.0
-
cpe:2.3:a:openssl:openssl:4.0.2