CVE-2025-59947
EUVD-2025-20344615.12.2025, 21:15
NanoMQ is a messaging broker/bus for IoT Edge & SDV. Versions prior to 0.24.4 have a buffer overflow case while the PUBLISH packets trigger both shared subscription and vanila subscription. This is fixed in version 0.24.4. As a workaround, disable shared subscription.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| emqx | nanomq | 𝑥 < 0.24.4 |
𝑥
= Vulnerable software versions