Junglewise Threat Intelligence

CVE-2026-26014: GO-2026-4479 - Usage of random nonce generation with AES GCM ciphers risks leaking the authentication key in github.com/pion/dtls

CVE-2026-26014 · Severity: low · CVSS 3.1 · Published 2026-02-19

Technologies: github.com/pion/dtls (Go), github.com/pion/dtls/v2 (Go). Vendors: Go.

Executive brief

Usage of random nonce generation with AES GCM ciphers risks leaking the authentication key in github.com/pion/dtls

Affected products

  • Go github.com/pion/dtls
  • Go github.com/pion/dtls/v3
  • Go github.com/pion/dtls/v2

Related threats