CVE-2024-40494: Keith-Cullen Freecoap

Critical severity, CVSS 9.8. EPSS: 1.2% chance of exploitation in the next 30 days.

Buffer Overflow in coap_msg.c in FreeCoAP allows remote attackers to execute arbitrary code or cause a denial of service (stack buffer overflow) via a crafted packet.

Affected products

Published 2024-10-22. Last modified 2026-06-17.