Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Gazer-Star

#17337of 53,630
15.5Total CVSS
Vulnerabilities · 2
High
2
PT-2023-24905
8.0
2023-06-12
Nanomq · Nanomq · CVE-2023-34488
**Name of the Vulnerable Software and Affected Versions** NanoMQ version 0.17.5 **Description** The issue arises from a heap-buffer-overflow in the `conn handler` function of `mqtt parser.c` when processing malformed messages. **Recommendations** For NanoMQ version 0.17.5, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2023-24907
7.5
2023-06-12
Nanomq · Nanomq · CVE-2023-34494
**Name of the Vulnerable Software and Affected Versions** NanoMQ version 0.16.5 **Description** The issue is related to a heap-use-after-free error in the `nano ctx send` function of `nmq mqtt.c`. **Recommendations** For NanoMQ version 0.16.5, at the moment, there is no information about a newer version that contains a fix for this vulnerability.