#VU88958 Heap-based buffer overflow in NanoMQ - CVE-2024-31040
Published: April 24, 2024
NanoMQ
NanoMQ
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a boundary error in the "get_var_integer" function in mqtt_parser.c. A remote attacker can pass specially crafted data to the application, trigger a heap-based buffer overflow and cause a denial of service condition on the target system.