CVE-2019-9004

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
22/02/2019
Last modified:
17/06/2026

Description

In Eclipse Wakaama (formerly liblwm2m) 1.0, core/er-coap-13/er-coap-13.c in lwm2mserver in the LWM2M server mishandles invalid options, leading to a memory leak. Processing of a single crafted packet leads to leaking (wasting) 24 bytes of memory. This can lead to termination of the LWM2M server after exhausting all available memory.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:eclipse:wakaama:1.0:*:*:*:*:*:*:*