]> git.ipfire.org Git - thirdparty/curl.git/commitdiff
mqtt: clear the leftovers pointer when sending succeeds
authorz2_ on hackerone <>
Tue, 24 Aug 2021 07:50:33 +0000 (09:50 +0200)
committerDaniel Stenberg <daniel@haxx.se>
Mon, 13 Sep 2021 14:51:31 +0000 (16:51 +0200)
CVE-2021-22945

Bug: https://curl.se/docs/CVE-2021-22945.html

lib/mqtt.c

index f077e6c3dc44207afa80cca68fa6c4ee1032d6dd..fcd40b41e600e77ed71b93b7bcf1813c79044cce 100644 (file)
@@ -128,6 +128,10 @@ static CURLcode mqtt_send(struct Curl_easy *data,
     mq->sendleftovers = sendleftovers;
     mq->nsend = nsend;
   }
+  else {
+    mq->sendleftovers = NULL;
+    mq->nsend = 0;
+  }
   return result;
 }