RMQTT Broker 0.4.0 allows remote attackers to cause a Denial of Service (daemon crash) via a certain sequence of five TCP packets.
Weakness
The product does not release or incorrectly releases a resource before it is made available for re-use.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Broker |
Ubuntu |
mantic |
* |
Potential Mitigations
- Use a language that does not allow this weakness to occur or provides constructs that make this weakness easier to avoid.
- For example, languages such as Java, Ruby, and Lisp perform automatic garbage collection that releases memory for objects that have been deallocated.
References