DOS: NPM Mosca MQTT Denial of Service

This signature detects attempts to exploit a known vulnerability against NPM Mosca. A successful attack can result in a denial-of-service condition.

Extended Description

This vulnerability allows remote attackers to deny service on vulnerable installations of npm mosca 2.8.1. Authentication is not required to exploit this vulnerability. The specific flaw exists within the processing of topics. A crafted regular expression can cause the broker to crash. An attacker can leverage this vulnerability to deny access to the target system. Was ZDI-CAN-6306.

Affected Products

Mosca_project mosca

References

CVE: CVE-2018-11615

Short Name
DOS:APPLICATION:NPM-MOSCA-DOS
Severity
Major
Recommended
False
Recommended Action
Drop
Category
DOS
Keywords
CVE-2018-11615 Denial MQTT Mosca NPM Service of
Release Date
12/20/2019
Supported Platforms

srx-branch-19.3

vsrx3bsd-19.2

srx-19.4

vsrx3bsd-19.4

srx-branch-19.4

vsrx-19.4

vsrx-19.2

srx-19.3

Sigpack Version
3337
False Positive
Unknown
Vendors

Mosca_project

CVSS Score

7.8

Found a potential security threat?