CVE-2018-19587: Buffer Overflow
Published Nov 27, 2018
·Updated
In Cesanta Mongoose 6.13, a SIGSEGV exists in the mongoose.c mgmqttaddsession() function.
Affected Software
1 affected component
Cesanta Mongoose=6.13
Event History
Nov 27, 2018
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue in Cesanta Mongoose 6.13?
The vulnerability ID for this issue in Cesanta Mongoose 6.13 is CVE-2018-19587.
2
What is the severity level of CVE-2018-19587?
CVE-2018-19587 has a severity level of medium with a CVSS score of 6.5.
3
Where can I find more information about CVE-2018-19587?
You can find more information about CVE-2018-19587 at the following reference URL: https://github.com/insi2304/mongoose-fuzz
4
What software version is affected by CVE-2018-19587?
Cesanta Mongoose version 6.13 is affected by CVE-2018-19587.
5
What is the description of CVE-2018-19587?
CVE-2018-19587 is a vulnerability in Cesanta Mongoose 6.13 that allows a SIGSEGV to occur in the mongoose.c mg_mqtt_add_session() function.