[ubuntu/resolute-security] rabbitmq-server 4.0.5-10ubuntu5.1 (Accepted)
Leonidas S. Barbosa
leo.barbosa at canonical.com
Mon Oct 5 14:31:57 UTC 2026
rabbitmq-server (4.0.5-10ubuntu5.1) resolute-security; urgency=medium
* SECURITY UPDATE: Allocation of resources without limits
- debian/patches/CVE-2026-59248.patch: add a hard limit for HPACK
integer decoding in bundled cowlib to prevent memory exhaustion
via crafted HPACK/QPACK prefixed-integer encoding.
- CVE-2026-59248
Date: 2026-09-30 14:15:13.794583+00:00
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
https://launchpad.net/ubuntu/+source/rabbitmq-server/4.0.5-10ubuntu5.1
-------------- next part --------------
Sorry, changesfile not available.
More information about the Resolute-changes
mailing list