Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Lxndr

#37704of 53,633
7.5Total CVSS
Vulnerabilities · 1
PT-2019-17664
7.5
2019-05-06
Mqtt Packet · Mqtt-Packet · CVE-2019-5432
**Name of the Vulnerable Software and Affected Versions** mqtt-packet module versions 3.5.0 and earlier mqtt-packet module versions 4.0.0 through 4.1.3 mqtt-packet module versions 5.0.0 through 5.6.1 mqtt-packet module versions 6.0.0 through 6.1.2 **Description** A specifically malformed MQTT Subscribe packet can cause MQTT Brokers using the mqtt-packet module to crash due to an issue with decoding. **Recommendations** For versions 3.5.0 and earlier, update to version 3.5.1 or later. For versions 4.0.0 through 4.1.3, update to version 4.1.4 or later. For versions 5.0.0 through 5.6.1, update to version 5.6.2 or later. For versions 6.0.0 through 6.1.2, update to version 6.1.3 or later.