UBUNTU-CVE-2021-22116
Dashboard / Vulnerabilities / UBUNTU-CVE-2021-22116
UBUNTU-CVE-2021-22116
Summary:
Details: RabbitMQ all versions prior to 3.8.16 are prone to a denial of service vulnerability due to improper input validation in AMQP 1.0 client connection endpoint. A malicious user can exploit the vulnerability by sending malicious AMQP messages to the target RabbitMQ instance having the AMQP 1.0 plugin enabled.
References: https://ubuntu.com/security/CVE-2021-22116, https://tanzu.vmware.com/security/cve-2021-22116, https://github.com/rabbitmq/rabbitmq-server/pull/2953, https://ubuntu.com/security/notices/USN-5004-1, https://www.cve.org/CVERecord?id=CVE-2021-22116
Affected packages
Package
Name: rabbitmq-server
Purl: pkg:deb/ubuntu/[email protected]+esm1?arch=source&distro=esm-infra/xenial
Affected ranges
Type: ECOSYSTEM
Events:
