Skip to content
Noroxi

zeromq records

11 published records for vendor zeromq.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
90.9%
Median publish → KEV
No record has entered KEV

All records

11 records
  • In ZeroMQ libzmq before 4.0.9, 4.1.x before 4.1.7, and 4.2.x before 4.3.2, a remote, unauthenticated client connecting to a libzmq applicati

    CriticalCVSS 9.8Proof of conceptEPSS 42%

    zeromq · libzmqJul 10, 2019

  • There's a flaw in the zeromq server in versions before 4.3.3 in src/decoder_allocators.hpp.

    HighCVSS 8.1No exploitEPSS 44%

    zeromq · libzmqApr 1, 2021

  • ZeroMQ libzmq 4.3.3 has a heap-based buffer overflow in zmq::tcp_read, a different vulnerability than CVE-2021-20235.

    CriticalCVSS 9.8No exploitEPSS 2%

    zeromq · libzmqJun 30, 2021

  • A flaw was found in the ZeroMQ server in versions before 4.3.3.

    CriticalCVSS 9.8No exploitEPSS 2%

    zeromq · zeromqMay 28, 2021

  • CVE-2019-6250
    38Monitor

    A pointer overflow, with code execution, was discovered in ZeroMQ libzmq (aka 0MQ) 4.2.x and 4.3.x before 4.3.1.

    HighCVSS 8.8Proof of conceptEPSS 10%

    zeromq · libzmqJan 13, 2019

  • Denial of Service in ZeroMQ

    HighCVSS 7.5No exploitEPSS 3%

    zeromq · libzmqSep 11, 2020

  • An uncontrolled resource consumption (memory leak) flaw was found in ZeroMQ's src/xpub.cpp in versions before 4.3.3.

    HighCVSS 7.5No exploitEPSS 2%

    zeromq · libzmqMay 28, 2021

  • An uncontrolled resource consumption (memory leak) flaw was found in the ZeroMQ client in versions before 4.3.3 in src/pipe.cpp.

    MediumCVSS 6.5No exploitEPSS 1%

    zeromq · libzmqApr 1, 2021

  • CVE-2014-9721
    18Monitor

    libzmq before 4.0.6 and 4.1.x before 4.1.1 allows remote attackers to conduct downgrade attacks and bypass ZMTP v3 protocol security mechani

    MediumCVSS 4.3No exploitEPSS 3%

    zeromq · zeromqJun 3, 2015

  • CVE-2014-7202
    18Monitor

    stream_engine.cpp in libzmq (aka ZeroMQ/C++)) 4.0.5 before 4.0.5 allows man-in-the-middle attackers to conduct downgrade attacks via a craft

    MediumCVSS 4.3No exploitEPSS 2%

    zeromq · zeromqOct 8, 2014

  • CVE-2014-7203
    18Monitor

    libzmq (aka ZeroMQ/C++) 4.0.x before 4.0.5 does not ensure that nonces are unique, which allows man-in-the-middle attackers to conduct repla

    MediumCVSS 4.3No exploitEPSS 2%

    zeromq · zeromqOct 8, 2014