CNNVD-202507-3609 Information

CNNVD ID

CNNVD-202507-3609

CVE-2024-42645

  • CNNVD Published: 2025-07-29

Description (Chinese)

FlashMQ是Wiebe Cazemier个人开发者的一个快速轻量级的MQTT代理服务器。 FlashMQ 1.14.0版本存在安全漏洞,该漏洞源于特制保留消息导致断言失败,可能导致拒绝服务攻击。

Description (English)

FlashMQ is a fast and lightweight MQTT proxy server for Wiebe Cazemier personal developers. Version 1.14.0 of FlashMQ contains a security loophole, which stems from the failure of the ad hoc reservation message, which could lead to a denial of service attack.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

个人开发者

Published

2025-07-29

Last Modified

2026-02-24

References

https://github.com/songxpu/bug_report/blob/master/MQTT/FlashMQ/CVE-2024-42645.md https://www.flashmq.org/2024/06/17/flashmq-1-15-1-released/ https://github.com/halfgaar/FlashMQ https://access.redhat.com/security/cve/cve-2024-42645

Patch

https://github.com/halfgaar/FlashMQ/releases

Share on: