Updated librabbitmq packages fix security vulnerabilities
Publication date: 12 Sep 2026Modification date: 12 Sep 2026
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2026-59986 , CVE-2026-61547
Description
amqp_decode_bytes size_t integer overflow bypasses bounds check on
32-bit (OOB read). (CVE-2026-59986)
Heap Buffer Overflow in amqp_send_frame() When Serializing Oversized
AMQP_FRAME_BODY. (CVE-2026-61547)
References
- https://bugs.mageia.org/show_bug.cgi?id=36189
- https://lists.debian.org/debian-security-announce/2026/msg00358.html
- https://github.com/alanxz/rabbitmq-c/security/advisories/GHSA-jgjf-7fwf-f3c7
- https://github.com/alanxz/rabbitmq-c/security/advisories/GHSA-hfjv-vcp3-39wh
- https://ubuntu.com/security/notices/USN-8724-1
- https://www.cve.org/CVERecord?id=CVE-2026-59986
- https://www.cve.org/CVERecord?id=CVE-2026-61547
SRPMS
10/core
- librabbitmq-0.15.0-2.2.mga10
9/core
- librabbitmq-0.11.0-1.2.mga9