Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3647-h3m7-326w

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In Eclipse Mosquitto version 2.0.0 to 2.0.9, if an authenticated client that had connected with MQTT v5 sent a crafted CONNACK message to the broker, a NULL pointer dereference would occur.

In Eclipse Mosquitto version 2.0.0 to 2.0.9, if an authenticated client that had connected with MQTT v5 sent a crafted CONNACK message to the broker, a NULL pointer dereference would occur.

EPSS

Процентиль: 70%
0.00624
Низкий

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 5 лет назад

In Eclipse Mosquitto version 2.0.0 to 2.0.9, if an authenticated client that had connected with MQTT v5 sent a crafted CONNACK message to the broker, a NULL pointer dereference would occur.

CVSS3: 6.5
nvd
почти 5 лет назад

In Eclipse Mosquitto version 2.0.0 to 2.0.9, if an authenticated client that had connected with MQTT v5 sent a crafted CONNACK message to the broker, a NULL pointer dereference would occur.

CVSS3: 6.5
debian
почти 5 лет назад

In Eclipse Mosquitto version 2.0.0 to 2.0.9, if an authenticated clien ...

EPSS

Процентиль: 70%
0.00624
Низкий

Дефекты

CWE-476