Skip to content
Rota Nacional

Cyber ·

CVE-2026-92564: denial-of-service risk in Qpid Broker-J

A notice published on September 24, 2026 reports that excessively nested AMQP field-table types can cause a stack overflow before authentication in Apache Qpid Broker-J.

The notice, published on September 24, 2026 in the oss-sec feed and presented as an automated translation, rates the issue important. It affects the Apache Qpid Broker-J AMQP 0-8 protocol plugin through version 10.1.0. An unauthenticated attacker could exploit nested types in AMQP field tables to trigger a StackOverflowError and potentially cause denial of service.

The stated recommendation is to upgrade to version 10.1.1, which fixes the issue. To check the context, original wording, and any updates, consult the original oss-sec feed post and verify the software version and advisory through official Apache Qpid channels. If you use AI to study or apply this material, do not submit credentials, personal data, or sensitive internal details.

Get new articles

Privacy, AI engineering and security in your inbox.

Rota Nacional

Bring privacy into your workflow.

30 days, no card, with a starting quota. After that, Pix credit from R$ 5,00.

Try free