Логотип exploitDog
bind: "CVE-2024-3935"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2024-3935"

Количество 6

Количество 6

ubuntu логотип

CVE-2024-3935

около 1 года назад

In Eclipse Mosquito, versions from 2.0.0 through 2.0.18, if a Mosquitto broker is configured to create an outgoing bridge connection, and that bridge connection has an incoming topic configured that makes use of topic remapping, then if the remote connection sends a crafted PUBLISH packet to the broker a double free will occur with a subsequent crash of the broker.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2024-3935

около 1 года назад

In Eclipse Mosquito, versions from 2.0.0 through 2.0.18, if a Mosquitto broker is configured to create an outgoing bridge connection, and that bridge connection has an incoming topic configured that makes use of topic remapping, then if the remote connection sends a crafted PUBLISH packet to the broker a double free will occur with a subsequent crash of the broker.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2024-3935

около 1 года назад

In Eclipse Mosquito, versions from 2.0.0 through 2.0.18, if a Mosquitt ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-r5mw-c5jc-r788

около 1 года назад

In Eclipse Mosquito, versions from 2.0.0 through 2.0.18, if a Mosquitto broker is configured to create an outgoing bridge connection, and that bridge connection has an incoming topic configured that makes use of topic remapping, then if the remote connection sends a crafted PUBLISH packet to the broker a double free will occur with a subsequent crash of the broker.

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2024-09880

около 1 года назад

Уязвимость брокера сообщений Eclipse Mosquitto, связанная с повторным освобождением памяти, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20241112-07

около 1 года назад

Множественные уязвимости mosquitto

CVSS3: 9.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-3935

In Eclipse Mosquito, versions from 2.0.0 through 2.0.18, if a Mosquitto broker is configured to create an outgoing bridge connection, and that bridge connection has an incoming topic configured that makes use of topic remapping, then if the remote connection sends a crafted PUBLISH packet to the broker a double free will occur with a subsequent crash of the broker.

CVSS3: 6.5
0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-3935

In Eclipse Mosquito, versions from 2.0.0 through 2.0.18, if a Mosquitto broker is configured to create an outgoing bridge connection, and that bridge connection has an incoming topic configured that makes use of topic remapping, then if the remote connection sends a crafted PUBLISH packet to the broker a double free will occur with a subsequent crash of the broker.

CVSS3: 6.5
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-3935

In Eclipse Mosquito, versions from 2.0.0 through 2.0.18, if a Mosquitt ...

CVSS3: 6.5
0%
Низкий
около 1 года назад
github логотип
GHSA-r5mw-c5jc-r788

In Eclipse Mosquito, versions from 2.0.0 through 2.0.18, if a Mosquitto broker is configured to create an outgoing bridge connection, and that bridge connection has an incoming topic configured that makes use of topic remapping, then if the remote connection sends a crafted PUBLISH packet to the broker a double free will occur with a subsequent crash of the broker.

CVSS3: 7.5
0%
Низкий
около 1 года назад
fstec логотип
BDU:2024-09880

Уязвимость брокера сообщений Eclipse Mosquitto, связанная с повторным освобождением памяти, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
0%
Низкий
около 1 года назад
redos логотип
ROS-20241112-07

Множественные уязвимости mosquitto

CVSS3: 9.1
около 1 года назад

Уязвимостей на страницу