Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A heap buffer overflow vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function nni_msg_get_pub_pid() in the file message.c. An attacker could exploit this vulnerability to cause a denial of service attack.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
NanoMQ 缓冲区错误漏洞
Vulnerability Description
NanoMQ是美国EMQ Technologies开源的一款用于物联网边缘平台的轻量级快速 MQTT Broker。 NanoMQ 0.17.2版本存在安全漏洞,该漏洞源于可以通过调用文件 message.c 中的函数 nni_msg_get_pub_pid() 来触发堆缓冲区溢出。攻击者利用该漏洞可以造成拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A