Vulnerabilities
Vulnerable Software
Microsoft:  >> Azure Uamqp  >> 1.4.1  Security Vulnerabilities
The uAMQP is a C library for AMQP 1.0 communication to Azure Cloud Services. When processing an incorrect `AMQP_VALUE` failed state, may cause a double free problem. This may cause a RCE. Update submodule with commit 2ca42b6e4e098af2d17e487814a91d05f6ae4987.
CVSS Score
9.8
EPSS Score
0.015
Published
2024-02-27
Azure uAMQP is a general purpose C library for AMQP 1.0. The UAMQP library is used by several clients to implement AMQP protocol communication. When clients using this library receive a crafted binary type data, an integer overflow or wraparound or memory safety issue can occur and may cause remote code execution. This vulnerability has been patched in release 2024-01-01.
CVSS Score
9.8
EPSS Score
0.019
Published
2024-01-09


Contact Us

Shodan ® - All rights reserved