


Perceptive Security
SOC/SIEM Consultancy

Issue summary: Receiving a DTLS record for a future epoch while a handshake
is in progress causes OpenSSL to buffer far more memory than the record
itself requi…
Published:
25 August 2026 at 00:00:00
Alert date:
25 August 2026 at 18:05:54
Source:
nvd.nist.gov
Network Infrastructure, Security Tools
CVE-2026-54874 affects OpenSSL's DTLS implementation, where receiving records for a future epoch during a handshake causes excessive memory buffering. The vulnerability stems from OpenSSL retaining the entire 16KB read buffer per record rather than just the record bytes, with up to 100 records buffered per connection, resulting in ~1.7MB retained per connection. This yields a memory amplification factor of approximately 1200x, enabling remote memory exhaustion DoS attacks against DTLS servers. Affected versions include OpenSSL 4.0, 3.6, 3.5, 3.4, 3.0, 1.1.1, and 1.0.2. The issue was reported by Amazon Web Services on 18 May 2026 and fixed by Matt Caswell. Patches are available across all affected branches. Severity is assessed as Low due to bounded per-connection memory and applicability of existing connection limits.
Technical details
Mitigation steps:
Affected products:
OpenSSL 4.0
OpenSSL 3.6
OpenSSL 3.5
OpenSSL 3.4
OpenSSL 3.0
OpenSSL 1.1.1
OpenSSL 1.0.2
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-54874
https://github.com/openssl/openssl/commit/4808b5d64176451f3d93d87d0ac9c81a9b13fb23
https://github.com/openssl/openssl/commit/7110cb2f75806d0bf809eb2f90790d477900be40
https://github.com/openssl/openssl/commit/a0c8ec557d9cac078f032d76cdf684fe743eb382
https://github.com/openssl/openssl/commit/cc0c6710917cd5eec001b297355d2ba723505107
https://github.com/openssl/openssl/commit/f52ffc11b90737ac89083909618dc2e1f42c561c
https://openssl-library.org/news/secadv/20260825.txt
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
