Description
In Mosquitto before 2.0.16, a memory leak occurs when clients send v5 CONNECT packets with a will message that contains invalid property types.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-5511-1 | mosquitto security update |
EUVD |
EUVD-2023-44242 | In Mosquitto before 2.0.16, a memory leak occurs when clients send v5 CONNECT packets with a will message that contains invalid property types. |
Ubuntu USN |
USN-6492-1 | Mosquitto vulnerabilities |
References
History
Thu, 13 Feb 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In Mosquitto before 2.0.16, a memory leak occurs when clients send v5 CONNECT packets with a will message that contains invalid property types. | In Mosquitto before 2.0.16, a memory leak occurs when clients send v5 CONNECT packets with a will message that contains invalid property types. |
Status: PUBLISHED
Assigner: eclipse
Published:
Updated: 2025-02-13T16:55:55.699Z
Reserved: 2023-07-10T15:11:43.593Z
Link: CVE-2023-3592
No data.
Status : Modified
Published: 2023-10-02T20:15:10.123
Modified: 2025-02-13T17:16:57.610
Link: CVE-2023-3592
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
EUVD
Ubuntu USN