In Eclipse Mosquitto up to version 2.0.18a, an attacker can achieve memory leaking, segmentation fault or heap-use-after-free by sending specific sequences of "CONNECT", "DISCONNECT", "SUBSCRIBE", "UNSUBSCRIBE" and "PUBLISH" packets.
2024-10-11T16:15:14.860
2024-11-15T17:21:02.327
Analyzed
CVSSv3.1: 7.5 (HIGH)