VYPR
Critical severity9.8NVD Advisory· Published Aug 14, 2025· Updated Apr 15, 2026

CVE-2025-50518

CVE-2025-50518

Description

A use-after-free vulnerability exists in the coap_delete_pdu_lkd function within coap_pdu.c of the libcoap library. This issue occurs due to improper handling of memory after the freeing of a PDU object, leading to potential memory corruption or the possibility of executing arbitrary code. NOTE: this is disputed by the Supplier because it only occurs when an application uses libcoap incorrectly.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Obgm/Libcoapreferences2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.