216.73.217.22

CVE-2026-29013

· Published 17/04/2026 22:16 · Modified 17/04/2026 22:16

Labels: CVE-2026-29013 2026-04-17CVE-2026-29013CWE-125[email protected]

Essential information

Published
17/04/2026 22:16
Modified
17/04/2026 22:16
Author
Creator
CVSS
8.8 HIGH (v3) 8.8 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

libcoap contains out-of-bounds read vulnerabilities in OSCORE Appendix B.2 CBOR unwrap handling where get_byte_inc() in src/oscore/oscore_cbor.c relies solely on assert() for bounds checking, which is removed in release builds compiled with NDEBUG. Attackers can send crafted CoAP requests with malformed OSCORE options or responses during OSCORE negotiation to trigger out-of-bounds reads during CBOR parsing and potentially cause heap buffer overflow writes through integer wraparound in allocation size computation.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
libcoap / libcoap cpe:2.3:a:libcoap:libcoap:*:*:*:*:*:*:*:*

References