Remote denial of service via panic while parsing a crafted ECDHE_PSK ServerKeyExchange message.
Upgrade to v3.1.4 or later. This version includes this patch https://github.com/pion/dtls/pull/839 which fixes the issue.
No work around; please upgrade to v3.1.4 or a newer version.
{
"cwe_ids": [
"CWE-125"
],
"github_reviewed": true,
"github_reviewed_at": "2026-07-31T22:06:33Z",
"nvd_published_at": "2026-07-01T20:17:10Z",
"severity": "MODERATE"
}