Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in amqp_handle_input in amqp_connection.c in rabbitmq-c 0.9.0. There is an integer overflow that leads to heap memory corruption in the handling of CONNECTION_STATE_HEADER. A rogue server could return a malicious frame header that leads to a smaller target_size value than needed. This condition is then carried on to a memcpy function that copies too much data into a heap buffer.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
rabbitmq-c 缓冲区错误漏洞
Vulnerability Description
rabbitmq-c是一款基于C语言的AMQP(高级消息队列协议)客户端库。 rabbitmq-c 0.9.0版本中的amqp_connection.c文件的amqp_handle_input存在缓冲区错误漏洞。该漏洞源于网络系统或产品未对输入的数据进行正确的验证。
CVSS Information
N/A
Vulnerability Type
N/A