CVE-2021-34431
22.07.2021, 14:15
In Eclipse Mosquitto version 1.6 to 2.0.10, if an authenticated client that had connected with MQTT v5 sent a crafted CONNECT message to the broker a memory leak would occur, which could be used to provide a DoS attack against the broker.Enginsight
Vendor | Product | Version |
---|---|---|
eclipse | mosquitto | 1.6 ≤ 𝑥 ≤ 2.0.10 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration