CVE-2023-30362: Buffer Overflow
Published Jun 23, 2023
·Updated
Buffer Overflow vulnerability in coapsend function in libcoap library 4.3.1-103-g52cfd56 fixed in 4.3.1-120-ge242200 allows attackers to obtain sensitive information via malformed pdu.
Affected Software
1 affected component
libcoap libcoap<4.3.1-120-ge242200
Remediation
Patch Available
Event History
Jun 23, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-30362?
CVE-2023-30362 has a high severity rating due to its potential to allow attackers to exploit a buffer overflow in the libcoap library.
2
How do I fix CVE-2023-30362?
To fix CVE-2023-30362, you should upgrade the libcoap library to version 4.3.1-120-ge242200 or later.
3
What is the impact of CVE-2023-30362?
The impact of CVE-2023-30362 includes the possibility for attackers to obtain sensitive information by sending malformed Protocol Data Units (PDUs) to the affected system.
4
Which versions of libcoap are affected by CVE-2023-30362?
CVE-2023-30362 affects libcoap versions prior to 4.3.1-120-ge242200.
5
What component of libcoap is vulnerable in CVE-2023-30362?
The vulnerable component in libcoap for CVE-2023-30362 is the coap_send function.