CVE-2026-8718 | Zephyr Project up to 4.4.0 DTLS Socket sockets_tls.c tls_opt_dtls_peer_connection_id_value_get optlen heap-based overflow
A vulnerability was found in Zephyr Project Zephyr up to 4.4.0. It has been classified as very critical. This affects the function tls_opt_dtls_peer_connection_id_value_get of the file subsys/net/lib/sockets/sockets_tls.c of the component DTLS Socket. Performing a manipulation of the argument optlen results in heap-based buffer overflow.
This vulnerability is known as CVE-2026-8718. Remote exploitation of the attack is possible. No exploit is available.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More