buildroot/package/libcoap
Fabrice Fontaine 7cacc39b3b package/libcoap: fix CVE-2024-0962
A vulnerability was found in obgm libcoap 4.3.4. It has been rated as
critical. Affected by this issue is the function get_split_entry of the
file src/coap_oscore.c of the component Configuration File Handler. The
manipulation leads to stack-based buffer overflow. The attack may be
launched remotely. The exploit has been disclosed to the public and may
be used. It is recommended to apply a patch to fix this issue.
VDB-252206 is the identifier assigned to this vulnerability.

Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
(cherry picked from commit 9002b818be)
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
2024-03-18 17:42:56 +01:00
..
0001-coap_oscore-c-Fix-parsing-OSCORE-configuration-information.patch package/libcoap: fix CVE-2024-0962 2024-03-18 17:42:56 +01:00
Config.in
libcoap.hash package/libcoap: bump to version 4.3.4 2023-11-02 14:21:20 +01:00
libcoap.mk package/libcoap: fix CVE-2024-0962 2024-03-18 17:42:56 +01:00