446
VMScore

CVE-2019-9004

Published: 22/02/2019 Updated: 24/08/2020
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 446
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

In Eclipse Wakaama (formerly liblwm2m) 1.0, core/er-coap-13/er-coap-13.c in lwm2mserver in the LWM2M server mishandles invalid options, leading to a memory leak. Processing of a single crafted packet leads to leaking (wasting) 24 bytes of memory. This can lead to termination of the LWM2M server after exhausting all available memory.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

eclipse wakaama 1.0

Github Repositories

Eclipse Wakaama is a C implementation of the Open Mobile Alliance's LightWeight M2M protocol (LWM2M).

Wakaama Wakaama (formerly liblwm2m) is an implementation of the Open Mobile Alliance's LightWeight M2M protocol (LWM2M) Developers mailing list: deveclipseorg/mailman/listinfo/wakaama-dev Security warning The only official release of Wakaama, version 10, is affected by various security issues (CVE-2019-9004, CVE-2021-41040) Please use the most recent commit in

Wakaama Wakaama (formerly liblwm2m) is an implementation of the Open Mobile Alliance's LightWeight M2M protocol (LWM2M) Developers mailing list: deveclipseorg/mailman/listinfo/wakaama-dev Security warning The only official release of Wakaama, version 10, is affected by various security issues (CVE-2019-9004, CVE-2021-41040) Please use the most recent commit in

IoT-Flock is an open-source tool for IoT Traffic Generation which supports the two widely used IoT Application Layer Protocols, i.e., MQTT and CoAP.

IoT-Flock IoT-Flock is an open-source tool for IoT traffic generation which supports the two widely used IoT application layer protocols, ie, MQTT and CoAP IoT-Flock allows a user to create an IoT use case, add customized IoT devices into it and generate normal and malicious IoT traffic over a real-time network Sponsors Uses IoT-Flock allows a user to generate the detai

Eclipse Wakaama is a C implementation of the Open Mobile Alliance's LightWeight M2M protocol (LWM2M).

Wakaama Wakaama (formerly liblwm2m) is an implementation of the Open Mobile Alliance's LightWeight M2M protocol (LWM2M) Developers mailing list: deveclipseorg/mailman/listinfo/wakaama-dev Security warning The only official release of Wakaama, version 10, is affected by various security issues (CVE-2019-9004, CVE-2021-41040) Please use the most recent commit in