Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-31031

Опубликовано: 17 апр. 2024
Источник: debian

Описание

An issue in `coap_pdu.c` in libcoap 4.3.4 allows attackers to cause undefined behavior via a sequence of messages leading to unsigned integer overflow.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libcoapnot-affectedpackage
libcoap2not-affectedpackage
libcoap3fixed4.3.5-1package
libcoap3fixed4.3.4-1.1+deb13u1trixiepackage
libcoap3ignoredbookwormpackage

Примечания

  • https://github.com/obgm/libcoap/issues/1351

  • https://github.com/obgm/libcoap/commit/214665ac4b44b1b6a7e38d4d6907ee835a174928 (v4.3.5-rc1)

  • Introduced by: https://github.com/obgm/libcoap/commit/7033555d2978b8d4d5e16d43cfbfe1b1781c418f (v4.3.0-rc1)

  • Introduced by: https://github.com/obgm/libcoap/commit/47a83549a80dad9a83f84cdfaba54c54defb5444 (v4.3.2-rc1)

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 2 года назад

An issue in `coap_pdu.c` in libcoap 4.3.4 allows attackers to cause undefined behavior via a sequence of messages leading to unsigned integer overflow.

CVSS3: 7.5
nvd
почти 2 года назад

An issue in `coap_pdu.c` in libcoap 4.3.4 allows attackers to cause undefined behavior via a sequence of messages leading to unsigned integer overflow.

CVSS3: 7.5
github
почти 2 года назад

An issue in `coap_pdu.c` in libcoap 4.3.4 allows attackers to cause undefined behavior via a sequence of messages leading to unsigned integer overflow.