{
    "id": "CVE-2019-18609",
    "published": "2019-12-01 22:15:10",
    "last_modified": "2026-06-17 02:25:09",
    "cvss_score": "9.8",
    "cvss_severity": "CRITICAL",
    "cvss_version": "3.1",
    "cvss_vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
    "cwe": "CWE-787",
    "description": "An issue was discovered in amqp_handle_input in amqp_connection.c in rabbitmq-c 0.9.0. There is an integer overflow that leads to heap memory corruption in the handling of CONNECTION_STATE_HEADER. A rogue server could return a malicious frame header that leads to a smaller target_size value than needed. This condition is then carried on to a memcpy function that copies too much data into a heap buffer.",
    "epss_score": "0.03317",
    "epss_percentile": "0.88268",
    "kev": 0,
    "kev_due": null,
    "has_exploit": 0,
    "updated_at": "2026-10-10 18:17:20",
    "priority": {
        "rank": 3,
        "label": "In your normal cycle",
        "why": "Critical by CVSS (9.8), but no sign of active exploitation."
    },
    "products": [
        {
            "vendor": "canonical",
            "product": "ubuntu_linux"
        },
        {
            "vendor": "debian",
            "product": "debian_linux"
        },
        {
            "vendor": "fedoraproject",
            "product": "fedora"
        },
        {
            "vendor": "rabbitmq-c_project",
            "product": "rabbitmq-c"
        }
    ],
    "kev_detail": null,
    "exploits": [],
    "refs_list": [
        "https://github.com/alanxz/rabbitmq-c/blob/master/ChangeLog.md",
        "https://github.com/alanxz/rabbitmq-c/commit/fc85be7123050b91b054e45b91c78d3241a5047a",
        "https://lists.debian.org/debian-lts-announce/2019/12/msg00004.html",
        "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/WA7CPNVYMF6OQNIYNLWUY6U2GTKFOKH3/",
        "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XQER6XTKYMHNQR7QTHW7DJAH645WQROU/",
        "https://news.ycombinator.com/item?id=21681976",
        "https://security.gentoo.org/glsa/202003-07",
        "https://usn.ubuntu.com/4214-1/",
        "https://usn.ubuntu.com/4214-2/",
        "https://github.com/alanxz/rabbitmq-c/blob/master/ChangeLog.md",
        "https://github.com/alanxz/rabbitmq-c/commit/fc85be7123050b91b054e45b91c78d3241a5047a",
        "https://lists.debian.org/debian-lts-announce/2019/12/msg00004.html",
        "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/WA7CPNVYMF6OQNIYNLWUY6U2GTKFOKH3/",
        "https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XQER6XTKYMHNQR7QTHW7DJAH645WQROU/",
        "https://news.ycombinator.com/item?id=21681976",
        "https://security.gentoo.org/glsa/202003-07",
        "https://usn.ubuntu.com/4214-1/",
        "https://usn.ubuntu.com/4214-2/"
    ]
}