QID 981282
QID 981282: Python (pip) Security Update for CoAPthon (GHSA-5xc6-fpc7-4qvg)
The Serialize.deserialize() method in CoAPthon 3.1, 4.0.0, 4.0.1, and 4.0.2 mishandles certain exceptions, leading to a denial of service in applications that use this library (e.g., the standard CoAP server, CoAP client, CoAP reverse proxy, example collect CoAP server and client) when they receive crafted CoAP messages.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-5xc6-fpc7-4qvg for updates pertaining to this vulnerability.
Vendor References
- GHSA-5xc6-fpc7-4qvg -
github.com/advisories/GHSA-5xc6-fpc7-4qvg
CVEs related to QID 981282
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-5xc6-fpc7-4qvg | CoAPthon |
|