A heap buffer overflow vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function nni_msg_get_pub_pid() in the file message.c. An attacker could exploit this vulnerability to cause a denial of service attack.
| Software | From | Fixed in |
|---|---|---|
| emqx / nanomq | 0.17.2 | 0.17.2.x |