logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-33657

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-33657

Description:
A use-after-free vulnerability exists in NanoMQ 0.17.2. The vulnerability can be triggered by calling the function nni_mqtt_msg_get_publish_property() in the file mqtt_msg.c. This vulnerability is caused by improper data tracing, and an attacker could exploit it to cause a denial of service attack.
Last updated date:
01/06/2025
Type:
exploit
Confidence:
HIGH
Date of publishing:
06/14/2023
Reference url to background

https://github.com/emqx/nanomq/issues/1165#issue-1668648319

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2025

Privacy Policy