CVE-2021-22116: Input Validation
RabbitMQ all versions prior to 3.8.16 are prone to a denial of service vulnerability due to improper input validation in AMQP 1.0 client connection endpoint. A malicious user can exploit the vulnerability by sending malicious AMQP messages to the target RabbitMQ instance having the AMQP 1.0 plugin enabled.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-22116?
CVE-2021-22116 is a denial of service vulnerability in RabbitMQ versions prior to 3.8.16 due to improper input validation in the AMQP 1.0 client connection endpoint.
How severe is CVE-2021-22116?
CVE-2021-22116 has a severity rating of 7.5 (high).
Which software versions are affected by CVE-2021-22116?
RabbitMQ versions prior to 3.8.16 and Vmware Rabbitmq and Debian Debian Linux 9.0 are affected by CVE-2021-22116.
How can the denial of service vulnerability in RabbitMQ be exploited?
The vulnerability can be exploited by sending malicious AMQP messages to a target RabbitMQ instance with the AMQP 1.0 plugin enabled.
Are there any references for more information about CVE-2021-22116?
Yes, you can find more information about CVE-2021-22116 at the following references: [1] [2].