securityonline.info 7/31/2026, 3:00:48 PM · external

Erlang/OTP fixes critical CVE-2026-55953 MITM flaw and DoS bugs

Erlang/OTP fixes critical CVE-2026-55953 MITM flaw and DoS bugs
CyberSIXT Evidence Panel
Primary Source github.com
CVE Intel
CISA KEV Not in KEV
Patch Patch Available

THE Erlang/OTP team has addressed five security vulnerabilities within the runtime and its TLS stack. The most critical issue, CVE-2026-55953, allows network attackers to bypass server certificate checks, risking man-in-the-middle attacks. The vulnerabilities also include denial-of-service issues that can crash the BEAM VM and affect various applications. The affected versions range from OTP 17 onward, with recommended immediate updates to patched builds.

National cybersecurity agencies are advising administrators to promptly apply these updates due to the significance of Erlang/OTP in numerous critical infrastructures.

View Primary Source Via securityonline.info

Article by CyberSIXT