← Zurück zur CVE-Suche

CVE-2026-26453

ccoap

Beschreibung

ccoap 77f55c4b466e99327c24ace8a2913d3ba7e2ccd5 contains a null pointer dereference vulnerability in the coap_server_handle_session() function when processing COAP messages containing URI_PATH options with NULL data pointers. When the server searches for a URI_PATH option matching the string -separate-, it directly calls strncmp() on option_list[i].data without checking if the pointer is NULL. This causes a segmentation fault when the option-s data field is NULL.

EPSS 0.155%Risiko 0
Quelle öffnen
Veröffentlicht
2026-08-27 17:17:48
Betroffene Versionen
cannotmatch
Typ
Bibliothek
Zuletzt geändert
2026-08-27 17:17:48
Vektor
Pending