CVE-2026-21888 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

NanoMQ MQTT Broker (NanoMQ) is an all-around Edge Messaging Platform. MQTT v5 Variable Byte Integer parsing out-of-bounds: get_var_integer() accepts 5-byte vari…
High CVSS: 7.5

CVE-2026-21888

NanoMQ MQTT Broker (NanoMQ) is an all-around Edge Messaging Platform. MQTT v5 Variable Byte Integer parsing out-of-bounds: get_var_integer() accepts 5-byte varints without bounds checks; reliably triggers OOB read / crash when built with ASan. This affects 0.24.6 and earlier.
Vendor
Emqx
Product
Nanomq
CWE
CWE-125
Yayın Tarihi
2026-03-11 16:16:23
Güncelleme
2026-03-17 19:20:17
Source Identifier
security-advisories@github.com
KEV Date Added
-

Kategoriler

Referanslar