CVE-2024-21646: Microsoft Azure Uamqp
Critical severity, CVSS 9.8. EPSS: 5.1% chance of exploitation in the next 30 days.
Azure uAMQP is a general purpose C library for AMQP 1.0. The UAMQP library is used by several clients to implement AMQP protocol communication. When clients using this library receive a crafted binary type data, an integer overflow or wraparound or memory safety issue can occur and may cause remote code execution. This vulnerability has been patched in release 2024-01-01.
Affected products
- Microsoft Azure Uamqp: before 2024-01-01 (fixed in 2024-01-01)
Published 2024-01-09. Last modified 2026-06-17.