CVE-2019-17389

CVE-2019-17389

In RIOT 2019.07, the MQTT-SN implementation (asymcute) mishandles errors occurring during a read operation on a UDP socket. The receive loop ends. This allows an attacker (via a large packet) to prevent a RIOT MQTT-SN client from working until the device is restarted.

Source: CVE-2019-17389

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다