PT-2026-97567 · Vmware · Rabbitmq

CVE-2026-67240

·

Published

2026-09-23

·

Updated

2026-09-23

CVSS v4.0

2.3

Low

VectorAV:N/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions RabbitMQ versions prior to 4.2.7 RabbitMQ versions prior to 4.3.1
Description An authenticated AMQP 1.0 consumer with read and write permissions on a stream queue can cause significant CPU amplification through backtracking. This occurs because the pattern to regex function maps % to .*? and to ., then compiles the expression without an explicit match limit. A crafted LIKE filter containing overlapping lazy quantifiers can result in approximately 100-200 ms of CPU usage per delivered message. The issue is triggered when SQL filters are accepted at rabbit amqp session.erl:3264 and evaluated per-message at rabbit stream queue.erl:1439. This can be exploited by attaching a receiver with a filter and publishing messages with long property values.
Recommendations Update RabbitMQ to version 4.2.7 or later. Update RabbitMQ to version 4.3.1 or later.

Exploit

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-67240
GHSA-59C5-553C-57M2

Affected Products

Rabbitmq