Skip to content
Noroxi

libcoap records

18 published records for vendor libcoap.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
88.9%
Median publish → KEV
No record has entered KEV

All records

18 records
  • libcoap Out-of-Bounds Read in OSCORE CBOR Unwrap Handling

    HighCVSS 8.8No exploitEPSS 1%

    libcoap · libcoapApr 17, 2026

  • libcoap Stack-Based Buffer Overflow in Address Resolution DoS or Potential RCE

    HighCVSS 8.2No exploitEPSS 1%

    libcoap · libcoapDec 31, 2025

  • CVE-2024-0962
    31Monitor

    obgm libcoap Configuration File coap_oscore.c get_split_entry stack-based overflow

    HighCVSS 7.8No exploitEPSS 1%

    libcoap · libcoapJan 27, 2024

  • An issue in `coap_pdu.c` in libcoap 4.3.4 allows attackers to cause undefined behavior via a sequence of messages leading to unsigned intege

    HighCVSS 7.5No exploitEPSS 1%

    libcoap · libcoapApr 17, 2024

  • Buffer Overflow vulnerability in coap_send function in libcoap library 4.3.1-103-g52cfd56 fixed in 4.3.1-120-ge242200 allows attackers to ob

    HighCVSS 7.5No exploitEPSS 1%

    libcoap · libcoapJun 23, 2023

  • An issue in obgm and Libcoap v.a3ed466 allows a remote attacker to cause a denial of service via thecoap_context_t function in the src/coap_

    HighCVSS 7.5No exploitEPSS 1%

    Jun 6, 2024

  • A NULL pointer dereference in libcoap v4.3.5-rc2 and below allows a remote attacker to cause a denial of service via the coap_handle_request

    HighCVSS 7.5No exploitEPSS 1%

    Oct 9, 2024

  • NULL pointer dereference in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denial of service via a crafted DTLS

    HighCVSS 7.5No exploitEPSS 0%

    libcoap · libcoapNov 24, 2025

  • Integer signedness error in tls_verify_call_back() in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denial of

    HighCVSS 7.5No exploitEPSS 0%

    libcoap · libcoapNov 24, 2025

  • NULL pointer dereference in get_san_or_cn_from_cert() in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denial

    HighCVSS 7.5No exploitEPSS 0%

    libcoap · libcoapNov 24, 2025

  • libcoap 4.3.1 contains a buffer over-read via the function coap_parse_oscore_conf_mem at coap_oscore.c.

    MediumCVSS 6.5No exploitEPSS 1%

    libcoap · libcoapJun 19, 2023

  • A memory disclosure vulnerability exists in libcoap's OSCORE configuration parser in libcoap before release-4.3.5-patches.

    MediumCVSS 6.5No exploitEPSS 0%

    libcoap · libcoapDec 8, 2025

  • NULL pointer dereference in coap_dtls_generate_cookie() in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denia

    MediumCVSS 4.3No exploitEPSS 0%

    libcoap · libcoapNov 24, 2025

  • NULL pointer dereference in coap_dtls_generate_cookie() in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denia

    MediumCVSS 4.3No exploitEPSS 0%

    libcoap · libcoapNov 24, 2025

  • NULL pointer dereference in coap_dtls_generate_cookie() in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denia

    MediumCVSS 4.3No exploitEPSS 0%

    libcoap · libcoapNov 24, 2025

  • NULL pointer dereference in coap_dtls_generate_cookie() in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denia

    MediumCVSS 4.3No exploitEPSS 0%

    libcoap · libcoapNov 24, 2025

  • Null pointer dereference in coap_dtls_info_callback() in OISM libcoap 4.3.5 allows remote attackers to cause a denial of service via a DTLS

    MediumCVSS 4.3No exploitEPSS 0%

    libcoap · libcoapNov 24, 2025

  • Array index error in tls_verify_call_back() in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denial of service

    MediumCVSS 4.3No exploitEPSS 0%

    libcoap · libcoapNov 24, 2025