FlashMQ v1.14.0 was discovered to contain an assertion failure in the function PublishCopyFactory::getNewPublish, which occurs when the QoS value of the publish object is greater than 0.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-54830 FlashMQ v1.14.0 was discovered to contain an assertion failure in the function PublishCopyFactory::getNewPublish, which occurs when the QoS value of the publish object is greater than 0.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Thu, 07 Aug 2025 06:00:00 +0900

Type Values Removed Values Added
CPEs cpe:2.3:a:flashmq:flashmq:1.14.0:*:*:*:*:*:*:*

Thu, 31 Jul 2025 19:30:00 +0900

Type Values Removed Values Added
First Time appeared Flashmq
Flashmq flashmq
Vendors & Products Flashmq
Flashmq flashmq

Thu, 31 Jul 2025 00:15:00 +0900

Type Values Removed Values Added
Weaknesses CWE-617
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 29 Jul 2025 23:00:00 +0900

Type Values Removed Values Added
Description FlashMQ v1.14.0 was discovered to contain an assertion failure in the function PublishCopyFactory::getNewPublish, which occurs when the QoS value of the publish object is greater than 0.
References

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-07-30T15:10:45.401Z

Reserved: 2024-08-05T00:00:00.000Z

Link: CVE-2024-42644

cve-icon Vulnrichment

Updated: 2025-07-30T13:32:44.453Z

cve-icon NVD

Status : Analyzed

Published: 2025-07-29T14:15:34.750

Modified: 2025-08-06T20:48:42.680

Link: CVE-2024-42644

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-07-31T18:15:42Z

Weaknesses