[ubuntu/resolute-security] rabbitmq-server 4.0.5-10ubuntu5.1 (Accepted)

Leonidas S. Barbosa leo.barbosa at canonical.com
Mon Oct 5 14:31:57 UTC 2026


rabbitmq-server (4.0.5-10ubuntu5.1) resolute-security; urgency=medium

  * SECURITY UPDATE: Allocation of resources without limits
    - debian/patches/CVE-2026-59248.patch: add a hard limit for HPACK
      integer decoding in bundled cowlib to prevent memory exhaustion
      via crafted HPACK/QPACK prefixed-integer encoding.
    - CVE-2026-59248

Date: 2026-09-30 14:15:13.794583+00:00
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
https://launchpad.net/ubuntu/+source/rabbitmq-server/4.0.5-10ubuntu5.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Resolute-changes mailing list