Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-7559

Опубликовано: 01 авг. 2019
Источник: debian

Описание

It was found that the Apache ActiveMQ client before 5.14.5 exposed a remote shutdown command in the ActiveMQConnection class. An attacker logged into a compromised broker could use this flaw to achieve denial of service on a connected client.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
activemqfixed5.14.3-3package
activemqfixed5.6.0+dfsg1-4+deb8u3jessiepackage

Примечания

  • Upstream commit: https://git-wip-us.apache.org/repos/asf?p=activemq.git;h=b8fc78e

  • https://issues.apache.org/jira/browse/AMQ-6470

Связанные уязвимости

CVSS3: 2.7
ubuntu
больше 6 лет назад

It was found that the Apache ActiveMQ client before 5.14.5 exposed a remote shutdown command in the ActiveMQConnection class. An attacker logged into a compromised broker could use this flaw to achieve denial of service on a connected client.

CVSS3: 2.7
redhat
почти 9 лет назад

It was found that the Apache ActiveMQ client before 5.14.5 exposed a remote shutdown command in the ActiveMQConnection class. An attacker logged into a compromised broker could use this flaw to achieve denial of service on a connected client.

CVSS3: 2.7
nvd
больше 6 лет назад

It was found that the Apache ActiveMQ client before 5.14.5 exposed a remote shutdown command in the ActiveMQConnection class. An attacker logged into a compromised broker could use this flaw to achieve denial of service on a connected client.

CVSS3: 4.9
github
больше 6 лет назад

Improper Input Validation and Missing Authentication for Critical Function in Apache ActiveMQ