CVE-2026-54887 | Erlang OTP up to 29.0.2 dtls_server_connection.erl random default key
A vulnerability classified as problematic was found in Erlang OTP up to 4.2.0/8.1/11.7.2/19.x/29.0.2. Affected by this issue is some unknown functionality in the library lib/ssl/src/dtls_server_connection.erl. Executing a manipulation of the argument random can lead to use of default cryptographic key.
This vulnerability is registered as CVE-2026-54887. The attack requires access to the local network. No exploit is available.
Upgrading the affected component is advised.VulDB Recent EntriesRead More