Buffer Overflow in coap_msg.c in FreeCoAP allows remote attackers to execute arbitrary code or cause a denial of service (stack buffer overflow) via a crafted packet.
https://github.com/dqp10515/security/tree/main/FreeCoAP_bug
https://gist.github.com/dqp10515/e9d7d663cb89187bfe7b39bb3aeb0113