This vulnerability allows remote attackers to deny service on vulnerable installations of npm mosca 2.8.1. Authentication is not required to exploit this vulnerability. The specific flaw exists within the processing of topics. A crafted regular expression can cause the broker to crash. An attacker can leverage this vulnerability to deny access to the target system. Was ZDI-CAN-6306.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: zdi

Published: 2018-08-30T12:00:00

Updated: 2024-08-05T08:17:07.813Z

Reserved: 2018-05-31T00:00:00

Link: CVE-2018-11615

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-08-30T12:29:00.437

Modified: 2019-10-09T23:33:37.480

Link: CVE-2018-11615

cve-icon Redhat

No data.