CVE-2021-34432

Description

In Eclipse Mosquitto versions 2.07 and earlier, the server will crash if the client tries to send a PUBLISH packet with topic length = 0.

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.343

Associated Vulnerability

VulnerabilityOS Platform
Vulnerability CVE-2021-34432 are affected in Mosquitto 2.0.7Windows
Multiple Vulnerabilities are affected in IBM App Connect Enterprise 12.0.8.0Windows
Multiple Vulnerabilities are affected in IBM App Connect Enterprise 11.0.0.20Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234