Security Advisory

CVE-2019-11779

6.5
MEDIUM

Vulnerability Description

In Eclipse Mosquitto 1.5.0 to 1.6.5 inclusive, if a malicious MQTT client sends a SUBSCRIBE packet containing a topic that consists of approximately 65400 or more '/' characters, i.e. the topic hierarchy separator, then a stack overflow will occur.
Published Date September 19, 2019
Official Source NIST NVD Advisory