2012-04-03 12:39:34 |
Vicente Ruiz |
bug |
|
|
added bug |
2012-04-03 16:31:37 |
Roger Light |
mosquitto: importance |
Undecided |
High |
|
2012-04-03 16:31:37 |
Roger Light |
mosquitto: status |
New |
In Progress |
|
2012-04-03 16:31:37 |
Roger Light |
mosquitto: milestone |
|
0.15.1 |
|
2012-06-11 16:43:17 |
Roger Light |
mosquitto: status |
In Progress |
Fix Committed |
|
2012-06-11 16:43:17 |
Roger Light |
mosquitto: milestone |
0.15.1 |
0.16 |
|
2012-07-18 20:53:13 |
Roger Light |
mosquitto: milestone |
0.16 |
1.0 |
|
2012-08-07 17:46:17 |
Roger Light |
bug task added |
|
mosquitto (Ubuntu) |
|
2012-08-13 23:42:05 |
Roger Light |
mosquitto: status |
Fix Committed |
Fix Released |
|
2012-08-15 23:00:36 |
Launchpad Janitor |
branch linked |
|
lp:~roger.light/ubuntu/quantal/mosquitto/upload-1.0.1 |
|
2012-08-15 23:20:48 |
Launchpad Janitor |
branch linked |
|
lp:~roger.light/ubuntu/quantal/mosquitto/upload-1.0.1 |
|
2012-08-16 15:36:20 |
Launchpad Janitor |
branch linked |
|
lp:~roger.light/ubuntu/precise/mosquitto/fix-972389 |
|
2012-08-16 19:33:09 |
Bryce Harrington |
description |
Hi!
I'm developing my own MQTT library and I'm testing with Mosquitto Broker. If I use 0x02 instead of 0x03 as version of protocol, Mosquitto crashes:
1333455622: New connection from 192.168.10.114.
1333455622: Invalid protocol version 2 in CONNECT from 192.168.10.114.
1333455622: Socket read error on client (null), disconnecting.
*** glibc detected *** /usr/local/sbin/mosquitto: malloc(): smallbin double linked list corrupted: 0x018a83f8 *** |
[Impact]
[Fix]
[Test Case]
[Regression Potential]
[Original Report]
Hi!
I'm developing my own MQTT library and I'm testing with Mosquitto Broker. If I use 0x02 instead of 0x03 as version of protocol, Mosquitto crashes:
1333455622: New connection from 192.168.10.114.
1333455622: Invalid protocol version 2 in CONNECT from 192.168.10.114.
1333455622: Socket read error on client (null), disconnecting.
*** glibc detected *** /usr/local/sbin/mosquitto: malloc(): smallbin double linked list corrupted: 0x018a83f8 *** |
|
2012-08-19 17:42:35 |
Dimitri John Ledkov |
nominated for series |
|
Ubuntu Precise |
|
2012-08-19 17:42:35 |
Dimitri John Ledkov |
bug task added |
|
mosquitto (Ubuntu Precise) |
|
2012-08-19 17:42:35 |
Dimitri John Ledkov |
nominated for series |
|
Ubuntu Quantal |
|
2012-08-19 17:42:35 |
Dimitri John Ledkov |
bug task added |
|
mosquitto (Ubuntu Quantal) |
|
2012-08-19 17:42:43 |
Dimitri John Ledkov |
mosquitto (Ubuntu Precise): status |
New |
Confirmed |
|
2012-08-19 17:42:47 |
Dimitri John Ledkov |
mosquitto (Ubuntu Quantal): status |
New |
Confirmed |
|
2012-08-19 17:46:12 |
Dimitri John Ledkov |
bug |
|
|
added subscriber Dmitrijs Ledkovs |
2012-12-29 21:56:12 |
Roger Light |
description |
[Impact]
[Fix]
[Test Case]
[Regression Potential]
[Original Report]
Hi!
I'm developing my own MQTT library and I'm testing with Mosquitto Broker. If I use 0x02 instead of 0x03 as version of protocol, Mosquitto crashes:
1333455622: New connection from 192.168.10.114.
1333455622: Invalid protocol version 2 in CONNECT from 192.168.10.114.
1333455622: Socket read error on client (null), disconnecting.
*** glibc detected *** /usr/local/sbin/mosquitto: malloc(): smallbin double linked list corrupted: 0x018a83f8 *** |
[Impact]
Remote clients can cause the broker to crash, meaning a DoS for other clients. The bug is caused by a double free() so no chance of buffer overrun or other security issue.
[Fix]
Remove the incorrect memory free call.
[Test Case]
[Regression Potential]
This case is now tested for as part of the continuous integration testing of upstream.
[Original Report]
Hi!
I'm developing my own MQTT library and I'm testing with Mosquitto Broker. If I use 0x02 instead of 0x03 as version of protocol, Mosquitto crashes:
1333455622: New connection from 192.168.10.114.
1333455622: Invalid protocol version 2 in CONNECT from 192.168.10.114.
1333455622: Socket read error on client (null), disconnecting.
*** glibc detected *** /usr/local/sbin/mosquitto: malloc(): smallbin double linked list corrupted: 0x018a83f8 *** |
|
2013-01-22 13:20:06 |
Iain Lane |
mosquitto (Ubuntu): status |
Confirmed |
Fix Committed |
|
2013-01-22 13:20:08 |
Iain Lane |
mosquitto (Ubuntu Precise): status |
Confirmed |
In Progress |
|
2013-01-22 13:20:10 |
Iain Lane |
mosquitto (Ubuntu Quantal): status |
Confirmed |
In Progress |
|
2013-01-22 13:44:43 |
Launchpad Janitor |
branch linked |
|
lp:~ubuntu-branches/ubuntu/raring/mosquitto/raring-proposed |
|
2013-01-22 14:11:09 |
Launchpad Janitor |
mosquitto (Ubuntu): status |
Fix Committed |
Fix Released |
|
2013-01-31 17:48:29 |
Brian Murray |
mosquitto (Ubuntu Quantal): status |
In Progress |
Fix Committed |
|
2013-01-31 17:48:32 |
Brian Murray |
bug |
|
|
added subscriber Ubuntu Stable Release Updates Team |
2013-01-31 17:48:47 |
Brian Murray |
bug |
|
|
added subscriber SRU Verification |
2013-01-31 17:48:49 |
Brian Murray |
tags |
|
verification-needed |
|
2013-01-31 17:49:59 |
Brian Murray |
mosquitto (Ubuntu Precise): status |
In Progress |
Fix Committed |
|
2013-01-31 18:15:39 |
Launchpad Janitor |
branch linked |
|
lp:ubuntu/precise-proposed/mosquitto |
|
2013-01-31 18:15:47 |
Launchpad Janitor |
branch linked |
|
lp:~ubuntu-branches/ubuntu/quantal/mosquitto/quantal-proposed |
|
2013-05-06 19:46:37 |
Brian Murray |
tags |
verification-needed |
removal-candidate verification-needed |
|
2013-05-06 23:27:17 |
Scott Kitterman |
tags |
removal-candidate verification-needed |
verification-done |
|
2013-05-07 05:18:11 |
Scott Kitterman |
removed subscriber Ubuntu Stable Release Updates Team |
|
|
|
2013-05-07 05:18:14 |
Launchpad Janitor |
mosquitto (Ubuntu Quantal): status |
Fix Committed |
Fix Released |
|
2013-05-07 05:20:24 |
Launchpad Janitor |
mosquitto (Ubuntu Precise): status |
Fix Committed |
Fix Released |
|
2016-08-30 19:05:59 |
hittudiv |
bug |
|
|
added subscriber hittudiv |