CyberRota Analysis
AI-GeneratedNGINX Plus instances utilizing the MQTT filter module are vulnerable to a heap buffer over-read, which can be exploited by unauthenticated attackers to restart the NGINX worker process. While the impact is limited to the data plane, organizations relying on NGINX for handling MQTT traffic should prioritize patching to mitigate potential disruptions. This vulnerability is particularly relevant for those still using supported versions of NGINX Plus.
Original NVD Description
When NGINX Plus is configured to use the Message Queuing Telemetry Transport (MQTT) filter module (ngx_stream_mqtt_filter_module), unauthenticated attackers can send requests with conditions beyond the attacker's control to cause a heap buffer over-read in the NGINX worker process, leading to a restart. Impact: This vulnerability may allow remote unauthenticated attackers to have limited control to restart the NGINX worker process. There is no control plane exposure; this is a data plane issue only. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.
Related CVEs
Other vulnerabilities affecting the same vendor(s)