Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7xr3-rgwh-pw22

Опубликовано: 16 окт. 2018
Источник: github
Github: Прошло ревью
CVSS3: 7.5

Описание

Denial of service vulnerability exists when .NET and .NET Core improperly process XML documents

A Denial of Service vulnerability was found in Apache Qpid Broker-J versions 7.x before 7.1.0 when AMQP protocols 0-8, 0-9 or 0-91 are used to publish messages with size greater than allowed maximum message size limit (100MB by default). The broker crashes due to the defect. AMQP protocols 0-10 and 1.0 are not affected.

Пакеты

Наименование

org.apache.qpid:apache-qpid-broker-j

maven
Затронутые версииВерсия исправления

>= 7.0.0, < 7.1.0

7.1.0

EPSS

Процентиль: 75%
0.00906
Низкий

7.5 High

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 7.5
nvd
больше 7 лет назад

A Denial of Service vulnerability was found in Apache Qpid Broker-J versions 7.0.0-7.0.4 when AMQP protocols 0-8, 0-9 or 0-91 are used to publish messages with size greater than allowed maximum message size limit (100MB by default). The broker crashes due to the defect. AMQP protocols 0-10 and 1.0 are not affected.

CVSS3: 7.5
debian
больше 7 лет назад

A Denial of Service vulnerability was found in Apache Qpid Broker-J ve ...

EPSS

Процентиль: 75%
0.00906
Низкий

7.5 High

CVSS3

Дефекты

CWE-20