1
Candidate: CVE-2017-2893
4
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-2893
5
https://www.talosintelligence.com/vulnerability_reports/TALOS-2017-0400
7
An exploitable NULL pointer dereference vulnerability exists in the MQTT
8
packet parsing functionality of Cesanta Mongoose 6.8. An MQTT SUBSCRIBE
9
packet can cause a NULL pointer dereference leading to server crash and
10
denial of service. An attacker needs to send a specially crafted MQTT
11
packet over the network to trigger this vulnerability.
14
sbeattie> mongoose is used on windows only to serve up content for
22
upstream_smplayer: needs-triage
23
precise/esm_smplayer: DNE
24
trusty_smplayer: not-affected (windows only)
25
xenial_smplayer: not-affected (windows only)
26
zesty_smplayer: not-affected (windows only)
27
artful_smplayer: not-affected (windows only)
28
devel_smplayer: not-affected (windows only)