
CVE-2026-29013 libcoap contains out-of-bounds read vulnerabilities in OSCORE Appendix B.2 CBOR unwrap handling where get_byte_inc() in src/oscore/oscore_cbor.c relies solely on asse… https://www.cve.org/CVERecord?id=CVE-2026-29013
Post summary
A new out-of-bounds read vulnerability in libcoap’s OSCORE CBOR handling has been disclosed; no PoC, exploit, or patch is mentioned.
