Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Zztytuo

#37630de 53,633
7.5CVSS total
Vulnerabilidades · 1
PT-2019-12640
7.5
2019-05-15
Libnyoci · Libnyoci · CVE-2019-12101
**Name of the Vulnerable Software and Affected Versions** LibNyoci version 0.07.00rc1 **Description** The issue is related to the `coap decode option` function in `coap.c`, which mishandles certain packets containing `Uri-Path: (null)`. This mishandling allows remote attackers to cause a denial of service, resulting in a segmentation fault. **Recommendations** For LibNyoci version 0.07.00rc1, consider disabling the `coap decode option` function as a temporary workaround until a patch is available. Restrict access to the `coap.c` module to minimize the risk of exploitation. Avoid using packets with `Uri-Path: (null)` in the affected API endpoint until the issue is resolved.