CVE-2025-65495 - OISM libcoap Integer Signedness Error Denial of Service Vulnerability
CVE ID : CVE-2025-65495
Published : Nov. 24, 2025, 2:15 p.m. | 1 hour, 34 minutes ago
Description : Integer signedness error in tls_verify_call_back() in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denial of service via a crafted TLS certificate that causes i2d_X509() to return -1 and be misused as a malloc() size parameter.
Severity: 7.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Nov. 24, 2025, 2:15 p.m. | 1 hour, 34 minutes ago
Description : Integer signedness error in tls_verify_call_back() in src/coap_openssl.c in OISM libcoap 4.3.5 allows remote attackers to cause a denial of service via a crafted TLS certificate that causes i2d_X509() to return -1 and be misused as a malloc() size parameter.
Severity: 7.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...