From 849726d04fc8e25ea56d3c54858506f82619e186 Mon Sep 17 00:00:00 2001 From: GLSAMaker Date: Sun, 7 Jan 2024 09:13:27 +0000 Subject: [ GLSA 202401-09 ] Eclipse Mosquitto: Multiple Vulnerabilities Bug: https://bugs.gentoo.org/918540 Signed-off-by: GLSAMaker Signed-off-by: Hans de Graaff --- glsa-202401-09.xml | 44 ++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 44 insertions(+) create mode 100644 glsa-202401-09.xml (limited to 'glsa-202401-09.xml') diff --git a/glsa-202401-09.xml b/glsa-202401-09.xml new file mode 100644 index 00000000..af3682ee --- /dev/null +++ b/glsa-202401-09.xml @@ -0,0 +1,44 @@ + + + + Eclipse Mosquitto: Multiple Vulnerabilities + Multiple vulnerabilities have been found in Eclipse Mosquitto which could result in denial of service. + mosquitto + 2024-01-07 + 2024-01-07 + 918540 + remote + + + 2.0.17 + 2.0.17 + + + +

Eclipse Mosquitto is an open source MQTT v3 broker.

+
+ +

Multiple vulnerabilities have been discovered in Eclipse Mosquitto. Please review the CVE identifier referenced below for details.

+
+ +

Please review the referenced CVE identifiers for details.

+
+ +

There is no known workaround at this time.

+
+ +

All Eclipse Mosquitto users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=app-misc/mosquitto-2.0.17" + +
+ + CVE-2023-0809 + CVE-2023-3592 + CVE-2023-28366 + + ajak + graaff +
\ No newline at end of file -- cgit v1.2.3-65-gdbad