CVE-2023-3592

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
02/10/2023
Last modified:
13/02/2025

Description

In Mosquitto before 2.0.16, a memory leak occurs when clients send v5 CONNECT packets with a will message that contains invalid property types.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:eclipse:mosquitto:*:*:*:*:*:*:*:* 2.0.16 (excluding)