Eclipse · Eclipse Mosquitto · CVE-2017-7654
**Name of the Vulnerable Software and Affected Versions**
Eclipse Mosquitto versions 1.4.15 and earlier
**Description**
A Memory Leak issue was discovered in the Mosquitto Broker, allowing unauthenticated clients to send crafted CONNECT packets that could cause a denial of service.
**Recommendations**
For Eclipse Mosquitto versions 1.4.15 and earlier, at the moment, there is no information about a newer version that contains a fix for this issue.