Description
RabbitMQ all versions prior to 3.8.16 are prone to a denial of service vulnerability due to improper input validation in AMQP 1.0 client connection endpoint. A malicious user can exploit the vulnerability by sending malicious AMQP messages to the target RabbitMQ instance having the AMQP 1.0 plugin enabled.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-2710-1 | rabbitmq-server security update |
EUVD |
EUVD-2021-9274 | RabbitMQ all versions prior to 3.8.16 are prone to a denial of service vulnerability due to improper input validation in AMQP 1.0 client connection endpoint. A malicious user can exploit the vulnerability by sending malicious AMQP messages to the target RabbitMQ instance having the AMQP 1.0 plugin enabled. |
Ubuntu USN |
USN-5004-1 | RabbitMQ vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: vmware
Published:
Updated: 2024-08-03T18:30:23.992Z
Reserved: 2021-01-04T00:00:00.000Z
Link: CVE-2021-22116
No data.
Status : Modified
Published: 2021-06-08T12:15:10.347
Modified: 2024-11-21T05:49:32.330
Link: CVE-2021-22116
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Ubuntu USN