CVE-2017-7243: Eclipse Tinydtls

High severity, CVSS 7.5. EPSS: 1.8% chance of exploitation in the next 30 days.

Eclipse tinydtls 0.8.2 for Eclipse IoT allows remote attackers to cause a denial of service (DTLS peer crash) by sending a "Change cipher spec" packet without pre-handshake.

Affected products

  • Eclipse Tinydtls: version 0.8.2 only

Published 2017-03-24. Last modified 2026-06-17.