Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
FlashMQ: Client can trigger uncaught exception on FlashMQ 1.26.1 and older
Vulnerability Description
FlashMQ is a MQTT broker/server, designed for multi-CPU environments. Prior to version 1.26.2, authorized clients have the ability to exceed the permitted over-commit of their write buffer and triggering an internal safe-guard exception. This exception was in a path that was not catchable, and therefore causes a server abort. This issue has been patched in version 1.26.2.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Vulnerability Type
未捕获的异常
Vulnerability Title
FlashMQ 安全漏洞
Vulnerability Description
FlashMQ是Wiebe Cazemier个人开发者的一个快速轻量级的MQTT代理服务器。 FlashMQ 1.26.2之前版本存在安全漏洞,该漏洞源于授权客户端可超出写缓冲区的允许超额提交,触发内部安全保护异常,导致服务器中止。
CVSS Information
N/A
Vulnerability Type
N/A