CVE-2024-31041: Null Pointer Dereference
Published Apr 17, 2024
·Updated
Null Pointer Dereference vulnerability in topicfiltern function in mqttparser.c in NanoMQ 0.21.7 allows attackers to cause a denial of service.
Affected Software
2 affected components
nanomq nanomq
emqx Nanomq=0.21.7
Event History
Apr 17, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-31041?
The severity of CVE-2024-31041 is classified as critical due to its potential to cause denial of service.
2
How do I fix CVE-2024-31041?
To fix CVE-2024-31041, upgrade to NanoMQ version 0.21.8 or later.
3
What causes the null pointer dereference in CVE-2024-31041?
CVE-2024-31041 is caused by improper handling of null pointers in the topic_filtern function of mqtt_parser.c.
4
What type of attack can CVE-2024-31041 facilitate?
CVE-2024-31041 can facilitate denial of service attacks against NanoMQ applications.
5
Which versions of NanoMQ are affected by CVE-2024-31041?
CVE-2024-31041 affects NanoMQ version 0.21.7 and earlier.