← back
CVE-2020-10063mediumCWE-190

Remote Denial of Service in CoAP Option Parsing Due To Integer Overflow

13Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 6.8epss 1.8%
exploitation probability
1.8%top 24% of all CVEs
observed exploitation
nono source reports it
A remote adversary with the ability to send arbitrary CoAP packets to be parsed by Zephyr is able to cause a denial of service. This issue affects: zephyrproject-rtos zephyr version 2.2.0 and later versions.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:N/A:H