logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2024-3935

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2024-3935

Description:
In Eclipse Mosquito, versions from 2.0.0 through 2.0.18, if a Mosquitto broker is configured to create an outgoing bridge connection, and that bridge connection has an incoming topic configured that makes use of topic remapping, then if the remote connection sends a crafted PUBLISH packet to the broker a double free will occur with a subsequent crash of the broker.
Last updated date:
01/29/2025
Type:
exploit
Confidence:
HIGH
Date of publishing:
01/29/2025
Reference url to background

https://gitlab.eclipse.org/security/vulnerability-reports/-/issues/197

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2025

Privacy Policy