Linuxsecurity
Critical Vulnerabilities in rabbitmq-c Affect Multiple Ubuntu Releases
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Multiple security vulnerabilities were discovered in rabbitmq-c, affecting Ubuntu 22.04 LTS, 24.04 LTS, 25.10, and 26.04 LTS. CVE-2023-35789 allows local attackers to expose credentials through command-line arguments. CVE-2026-44235 involves improper handling of AMQP frame lengths, leading to potential denial of service via remote exploitation. Additionally, CVE-2026-44236 presents a heap buffer overflow risk during AMQP login handshakes, which could allow remote code execution. These issues necessitate immediate updates to the affected packages to mitigate risks. The vulnerabilities were confirmed on June 16, 2026, with patches available for all affected versions.
Key Points: • rabbitmq-c vulnerabilities affect Ubuntu 22.04, 24.04, 25.10, and 26.04 LTS. • CVE-2023-35789 exposes credentials, while CVE-2026-44235 and CVE-2026-44236 pose serious denial of service and remote code execution risks. • Immediate updates are required to mitigate these vulnerabilities across affected systems.