vulnerability

Ubuntu: USN-4920-1 (CVE-2021-20234): ZeroMQ vulnerabilities

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:N/A:P)
Published
Apr 1, 2021
Added
Mar 22, 2023
Modified
Nov 15, 2024

Description

An uncontrolled resource consumption (memory leak) flaw was found in the ZeroMQ client in versions before 4.3.3 in src/pipe.cpp. This issue causes a client that connects to multiple malicious or compromised servers to crash. The highest threat from this vulnerability is to system availability.

Solution(s)

ubuntu-pro-upgrade-libzmq3ubuntu-pro-upgrade-libzmq5
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.