PT-2026-82310 · Unknown · Amqp091-Go

·

CVE-2026-79921

·

Published

2026-08-26

·

Updated

2026-09-04

CVSS v4.0

8.9

High

VectorAV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Name of the Vulnerable Software and Affected Versions amqp091-go versions prior to 1.13.0
Description A compromised or malicious AMQP broker can force the client to allocate resources for and process content body frames that exceed the negotiated frame max limit. This bypasses the protocol's built-in framing constraints, potentially leading to unexpected memory consumption or an application-layer denial of service (DoS).
Recommendations Update to version 1.13.0.

Exploit

Fix

DoS

Allocation of Resources Without Limits

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-98201
AZL-98214
CVE-2026-79921
GHSA-6C5V-HQJR-5XXP

Affected Products

Amqp091-Go