In Mosquitto before 2.0.16, excessive memory is allocated based on malicious initial packets that are not CONNECT packets.
eclipse·CWE-789·Published 2023-10-02