VYPR
High severity7.5NVD Advisory· Published Apr 25, 2018· Updated Jun 17, 2026

CVE-2017-7652

CVE-2017-7652

Description

In Eclipse Mosquitto 1.4.14, if a Mosquitto instance is set running with a configuration file, then sending a HUP signal to server triggers the configuration to be reloaded from disk. If there are lots of clients connected so that there are no more file descriptors/sockets available (default limit typically 1024 file descriptors on Linux), then opening the configuration file will fail.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • Eclipse/Mosquitto2 versions
    cpe:2.3:a:eclipse:mosquitto:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:eclipse:mosquitto:*:*:*:*:*:*:*:*range: >=1.0,<=1.4.14
    • (no CPE)range: 1.4.14
  • Debian/linux3 versions
    cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
    • cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
    • cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.