CVE-2024-31040: Emqx Nanomq

Low severity, CVSS 2.7. EPSS: 0.6% chance of exploitation in the next 30 days.

Buffer Overflow vulnerability in the get_var_integer function in mqtt_parser.c in NanoMQ 0.21.7 allows remote attackers to cause a denial of service via a series of specially crafted hexstreams.

Affected products

  • Emqx Nanomq: version 0.21.7 only

Published 2024-04-17. Last modified 2026-06-17.