🛡️ CVE-2026-55950 on Ubuntu — erlang
Description
Time-of-check Time-of-use (TOCTOU) race condition vulnerability in Erlang/OTP ssl (dtls_packet_demux module) allows an unauthenticated remote attacker to crash all active DTLS sessions on a listener. A DTLS server listener uses a single shared dtls_packet_demux gen_server process to route incoming UDP datagrams to the correct connection handler. When a DTLS client reconnects rapidly from the same source address and port (sending multiple ClientHello messages in quick succession), a race condition in the demux's internal gb_trees key-value store causes a {key_exists, {old, Client}} crash, terminating the demux process. Because the demux is shared across all DTLS associations on that listener, its crash immediately kills every active DTLS session, not just the attacker's. The attack is pre-authentication: the attacker only needs to send UDP datagrams containing valid ClientHello messages from the same source IP and port before the intermediate DOWN monitor message is processed by the gen_server. No credentials, no completed handshake, and no special configuration are required, and the crash can be repeated indefinitely to create a persistent denial of service for all clients of that listener. This vulnerability is associated with program file lib/ssl/src/dtls_packet_demux.erl. This issue affects OTP from OTP 25.3 before OTP 29.0.3, OTP 28.5.0.3 and OTP 27.3.4.14, corresponding to ssl from 10.9 before 11.7.3, 11.6.0.3 and 11.2.12.10.
Distribution advisory
This page covers CVE-2026-55950 as tracked by Ubuntu, for the package erlang. No fixed version has been recorded for this distribution yet.
How this vulnerability can be exploited
This issue can be reached over the network, attack complexity is high, an attacker needs no privileges on the target. No user interaction is required. The scope is unchanged, so the impact stays within the vulnerable component. Rated impact: confidentiality none, integrity none, availability high.
Affected software
UBUNTU-CVE-2026-55950 is recorded against 1 package.
- erlang
Timeline and source
Published on 2 July 2026 and last revised on 29 July 2026. No public exploit is currently recorded for this entry. Record sourced from OSV.
References
ubuntu.com (Report)
www.cve.org (Report)
github.com (Report)
osv.dev (Report)
cna.erlef.org (Report)
github.com (Report)
github.com (Report)
www.erlang.org (Report)
Details
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Packages
| Software | From version | Fixed in |
|---|---|---|
| erlang | — | — |
References
Similar Threats
More UBUNTU CVE 2026 advisories
Browse all of UBUNTU CVE 2026 in the advisory index.
- UBUNTU-CVE-2026-55827
- UBUNTU-CVE-2026-55831
- UBUNTU-CVE-2026-55833
- UBUNTU-CVE-2026-55851
- UBUNTU-CVE-2026-55868
- UBUNTU-CVE-2026-55869
- UBUNTU-CVE-2026-55892
- UBUNTU-CVE-2026-55895
- UBUNTU-CVE-2026-55952
- UBUNTU-CVE-2026-55953
- UBUNTU-CVE-2026-55955
- UBUNTU-CVE-2026-55956
- UBUNTU-CVE-2026-55957
- UBUNTU-CVE-2026-55958
- UBUNTU-CVE-2026-55960
- UBUNTU-CVE-2026-55961
Vulnerability Monitoring
Track new vulnerabilities in erlang
UBUNTU-CVE-2026-55950 is rated CVSS 5.9 Medium. BotEraser monitors your WordPress installation and notifies you when software you use appears in our vulnerability database.
Set Up Free Alerts →No credit card required · Results in minutes
ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.