[ubuntu/jammy-updates] mosquitto 2.0.11-1ubuntu1.2 (Accepted)

Ubuntu Archive Robot ubuntu-archive-robot at lists.canonical.com
Wed Apr 16 20:58:23 UTC 2025


mosquitto (2.0.11-1ubuntu1.2) jammy-security; urgency=medium

  * SECURITY UPDATE: Double free Denial of Service
    - debian/patches/CVE-2024-3935.patch: Fix crash on bridge using
      remapped topic when broker sent crafted PUBLISH packet
    - CVE-2024-3935
    
  * SECURITY UPDATE: Heap Buffer Overflow
    - debian/patches/CVE-2024-10525.patch: Fix buffer overflow
      when SUBACK received missing reason codes
    - CVE-2024-10525

  * debian/tests/broker: Make all test python scripts executable
  * debian/tests/control: Add python3-psutil for broker

Date: 2025-04-09 22:19:13.879047+00:00
Changed-By: Elise Hlady <elise.hlady at canonical.com>
Signed-By: Ubuntu Archive Robot <ubuntu-archive-robot at lists.canonical.com>
https://launchpad.net/ubuntu/+source/mosquitto/2.0.11-1ubuntu1.2
-------------- next part --------------
Sorry, changesfile not available.


More information about the jammy-changes mailing list