Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-2145

Опубликовано: 24 апр. 2012
Источник: redhat
CVSS2: 5

Описание

Apache Qpid 0.17 and earlier does not properly restrict incoming client connections, which allows remote attackers to cause a denial of service (file descriptor consumption) via a large number of incomplete connections.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise MRG 1qpid-cppWill not fix
MRG for RHEL-5 v. 2mrg-releaseFixedRHSA-2012:127719.09.2012
MRG for RHEL-5 v. 2python-qpidFixedRHSA-2012:127719.09.2012
MRG for RHEL-5 v. 2qpid-cpp-mrgFixedRHSA-2012:127719.09.2012
MRG for RHEL-5 v. 2qpid-javaFixedRHSA-2012:127719.09.2012
MRG for RHEL-5 v. 2qpid-jcaFixedRHSA-2012:127719.09.2012
MRG for RHEL-5 v. 2qpid-qmfFixedRHSA-2012:127719.09.2012
MRG for RHEL-5 v. 2qpid-toolsFixedRHSA-2012:127719.09.2012
Red Hat Enterprise Linux 6python-qpidFixedRHSA-2012:126919.09.2012
Red Hat Enterprise Linux 6qpid-cppFixedRHSA-2012:126919.09.2012

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=817175qpid-cpp: not closing incomplete connections exhausts file descriptors, leading to DoS

5 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 13 лет назад

Apache Qpid 0.17 and earlier does not properly restrict incoming client connections, which allows remote attackers to cause a denial of service (file descriptor consumption) via a large number of incomplete connections.

nvd
почти 13 лет назад

Apache Qpid 0.17 and earlier does not properly restrict incoming client connections, which allows remote attackers to cause a denial of service (file descriptor consumption) via a large number of incomplete connections.

debian
почти 13 лет назад

Apache Qpid 0.17 and earlier does not properly restrict incoming clien ...

github
больше 3 лет назад

Apache Qpid 0.17 and earlier does not properly restrict incoming client connections, which allows remote attackers to cause a denial of service (file descriptor consumption) via a large number of incomplete connections.

oracle-oval
почти 13 лет назад

ELSA-2012-1269: qpid security, bug fix, and enhancement update (MODERATE)

5 Medium

CVSS2