package/mosquitto: security bump to v2.0.10
authorTitouan Christophe <titouanchristophe@gmail.com>
Tue, 6 Apr 2021 11:16:13 +0000 (13:16 +0200)
committerPeter Korsgaard <peter@korsgaard.com>
Tue, 6 Apr 2021 11:19:55 +0000 (13:19 +0200)
commitc32bb6ce1b35de9320fb539a9a1929743e5b8425
tree2a7ac5cfa69fa4559f41b91745bc2cee5afbeaae
parent1988ebd36c6073ef18dc032ec4e09b7d8e622782
package/mosquitto: security bump to v2.0.10

Versions 2.0.10 of Mosquitto has been released. This is a security and bugfix release.

CVE-xxxx-xxxx: If an authenticated client connected with MQTT v5 sent a malformed
CONNACK message to the broker a NULL pointer dereference occurred, most likely
resulting in a segfault. This will be updated with the CVE number when it is assigned.
Affects versions 2.0.0 to 2.0.9 inclusive.

See the announcement: https://mosquitto.org/blog/2021/04/version-2-0-10-released/

Signed-off-by: Titouan Christophe <titouanchristophe@gmail.com>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
package/mosquitto/mosquitto.hash
package/mosquitto/mosquitto.mk