In Eclipse Mosquitto version from 1.0 to 1.4.15, a Null Dereference vulnerability was found in the Mosquitto library which could lead to crashes for those applications using the library.
The product dereferences a pointer that it expects to be valid but is NULL.
Link | Tags |
---|---|
https://bugs.eclipse.org/bugs/show_bug.cgi?id=533775 | issue tracking vendor advisory |
https://lists.debian.org/debian-lts-announce/2019/10/msg00035.html | third party advisory mailing list |
https://lists.debian.org/debian-lts-announce/2021/10/msg00022.html | third party advisory mailing list |