CVE-2017-7655: Null Pointer Dereference
Published Mar 27, 2019
·Updated
In Eclipse Mosquitto version from 1.0 to 1.4.15, a Null Dereference vulnerability was found in the Mosquitto library which could lead to crashes for those applications using the library.
Affected Software
3 affected components
Eclipse Mosquitto>=1.0<=1.4.15
Debian Debian Linux=8.0
Debian Debian Linux=9.0
Event History
Mar 27, 2019
CVE Published
via MITRE·07:20 PM
Data Sourced
via MITRE·07:20 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2017-7655?
CVE-2017-7655 is a Null Dereference vulnerability found in Eclipse Mosquitto version 1.0 to 1.4.15.
2
What is the severity of CVE-2017-7655?
CVE-2017-7655 has a severity level of 7.5 (high).
3
How does CVE-2017-7655 affect Eclipse Mosquitto?
CVE-2017-7655 can lead to crashes in applications using the Mosquitto library.
4
Which software versions are affected by CVE-2017-7655?
Eclipse Mosquitto versions 1.0 to 1.4.15 are affected by CVE-2017-7655.
5
How can I fix CVE-2017-7655?
To fix CVE-2017-7655, you should update Eclipse Mosquitto to a version beyond 1.4.15.