A null pointer dereference vulnerability exists in the server-side session management logic of ccoap 77f55c4b466e99327c24ace8a2913d3ba7e2ccd5. The issue is caused by a race condition between the request dispatch thread and the session cleanup thread when accessing shared session list nodes without proper synchronization.
Metrics
Affected Vendors & Products
References
History
Thu, 27 Aug 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Null Pointer Dereference in ccoap Session Management | |
| Weaknesses | CWE-362 CWE-476 |
Thu, 27 Aug 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A null pointer dereference vulnerability exists in the server-side session management logic of ccoap 77f55c4b466e99327c24ace8a2913d3ba7e2ccd5. The issue is caused by a race condition between the request dispatch thread and the session cleanup thread when accessing shared session list nodes without proper synchronization. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-08-27T13:47:19.470Z
Reserved: 2026-02-16T00:00:00.000Z
Link: CVE-2026-26456
No data.
Status : Received
Published: 2026-08-27T17:17:48.147
Modified: 2026-08-27T17:17:48.147
Link: CVE-2026-26456
No data.
OpenCVE Enrichment
Updated: 2026-08-27T17:30:12Z