Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-63235

Опубликовано: 07 авг. 2026
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

In sol commit 373d848 (2024-12-12), the broker does not fully release resources when handling malformed or duplicate CONNECT packets. When clients send invalid CONNECT packets - either due to repeated attempts or failed authentication - the server may silently drop the connection or send a CONNACK but fail to close the session or deallocate internal resources. This behavior allows an attacker to create numerous half-open connections that consume memory and file descriptors indefinitely, potentially triggering the Linux OOM killer and causing a denial of service.

A flaw was found in sol. The broker does not fully release resources when handling malformed or duplicate CONNECT packets. A remote attacker can send invalid CONNECT packets, which may cause the server to silently drop the connection or send a CONNACK without properly closing the session or deallocating internal resources. This behavior allows an attacker to create numerous half-open connections, consuming memory and file descriptors indefinitely, potentially leading to a denial of service.

Дополнительная информация

Статус:

Important
Дефект:
CWE-772
https://bugzilla.redhat.com/show_bug.cgi?id=2512606codepr sol: Sol: Denial of service via resource exhaustion from malformed CONNECT packets

EPSS

Процентиль: 25%
0.00318
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
nvd
12 дней назад

In sol commit 373d848 (2024-12-12), the broker does not fully release resources when handling malformed or duplicate CONNECT packets. When clients send invalid CONNECT packets - either due to repeated attempts or failed authentication - the server may silently drop the connection or send a CONNACK but fail to close the session or deallocate internal resources. This behavior allows an attacker to create numerous half-open connections that consume memory and file descriptors indefinitely, potentially triggering the Linux OOM killer and causing a denial of service.

CVSS3: 7.5
github
12 дней назад

In sol commit 373d848 (2024-12-12), the broker does not fully release resources when handling malformed or duplicate CONNECT packets. When clients send invalid CONNECT packets - either due to repeated attempts or failed authentication - the server may silently drop the connection or send a CONNACK but fail to close the session or deallocate internal resources. This behavior allows an attacker to create numerous half-open connections that consume memory and file descriptors indefinitely, potentially triggering the Linux OOM killer and causing a denial of service.

EPSS

Процентиль: 25%
0.00318
Низкий

7.5 High

CVSS3