Vulnerability Description
A memory leak vulnerability exists in NanoMQ 0.17.2. The vulnerability is located in the file message.c. An attacker could exploit this vulnerability to cause a denial of service attack by causing the program to consume all available memory resources.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Emqx | Nanomq | 0.17.2 |
Related Weaknesses (CWE)
References
- https://github.com/emqx/nanomqProduct
- https://github.com/emqx/nanomq/issues/1164ExploitMailing List
- https://github.com/emqx/nanomq/issues/1165#issuecomment-1515667127ExploitVendor Advisory
- https://github.com/emqx/nanomqProduct
- https://github.com/emqx/nanomq/issues/1164ExploitMailing List
- https://github.com/emqx/nanomq/issues/1165#issuecomment-1515667127ExploitVendor Advisory
FAQ
What is CVE-2023-33656?
CVE-2023-33656 is a vulnerability with a CVSS score of 5.5 (MEDIUM). A memory leak vulnerability exists in NanoMQ 0.17.2. The vulnerability is located in the file message.c. An attacker could exploit this vulnerability to cause a denial of service attack by causing the...
How severe is CVE-2023-33656?
CVE-2023-33656 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-33656?
Check the references section above for vendor advisories and patch information. Affected products include: Emqx Nanomq.