VDB
GCVE-110-MAGEIA-2026-314
GCVE-110-MAGEIA-2026-314
Advisory Published
The updated packages fix security vulnerabilities:
An issue was discovered in the C AMQP client library (aka rabbitmq-c)
through 0.13.0 for RabbitMQ. Credentials can only be entered on the
command line (e.g., for amqp-publish or amqp-consume) and are thus
visible to local attackers by listing a process and its arguments.
(CVE-2023-35789)
size_t underflow in AMQP frame length computation leads to out-of-bounds
read in rabbitmq-c. (CVE-2026-44235)
Heap buffer overflow in AMQP login handshake via undersized
connection.tune.frame_max. (CVE-2026-44236)
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | librabbitmq | 0 (affected), 0.15.0-2.1.mga10 (unaffected) | — |
| Mageia | librabbitmq | 0 (affected), 0.11.0-1.1.mga9 (unaffected) | — |
References
Browse GCVE Records
69,213 records in the GCVE database · Updated August 23, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.