Description
The Anti-Replay feature in the DTLS implementation in OpenSSL before 1.1.0 mishandles early use of a new epoch number in conjunction with a large sequence number, which allows remote attackers to cause a denial of service (false-positive packet drops) via spoofed DTLS records, related to rec_layer_d1.c and ssl3_record.c.
Remediation
References
Related Vulnerabilities
WordPress Plugin WP Academic People List Cross-Site Scripting (0.4.1)
WordPress Plugin Subscribe to Comments Local File Inclusion (2.1.2)
WordPress Plugin WordPress Photo Gallery by Gallery Bank Cross-Site Scripting (3.0.69)
WordPress Plugin Facebook Button by BestWebSoft Cross-Site Request Forgery (2.13)
WordPress Plugin CP Contact Form with PayPal Cross-Site Scripting (1.2.97)