CVE-2023-35862: Medium severity libcoap libcoap vulnerability
Published Jun 19, 2023
·Updated
libcoap 4.3.1 contains a buffer over-read via the function coapparseoscoreconfmem at coaposcore.c.
Affected Software
1 affected component
libcoap libcoap=4.3.1
Remediation
Patch Available
Event History
Jun 19, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-35862?
CVE-2023-35862 has been classified as a moderate severity vulnerability due to its potential impact on information disclosure.
2
How do I fix CVE-2023-35862?
To fix CVE-2023-35862, upgrade libcoap to version 4.3.2 or later, which addresses the buffer over-read issue.
3
What software is affected by CVE-2023-35862?
CVE-2023-35862 specifically affects libcoap version 4.3.1.
4
What type of vulnerability is CVE-2023-35862?
CVE-2023-35862 is a buffer over-read vulnerability that can lead to information leakage in applications using the affected software.
5
Where can I find more details about CVE-2023-35862?
More details about CVE-2023-35862 can be found in the official libcoap issue tracker on GitHub.