Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-4458

Опубликовано: 05 мар. 2013
Источник: redhat
CVSS2: 5
EPSS Низкий

Описание

The AMQP type decoder in Apache Qpid 0.20 and earlier allows remote attackers to cause a denial of service (memory consumption and server crash) via a large number of zero width elements in the client-properties map in a connection.start-ok message.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6qpid-cppAffected
Red Hat Enterprise MRG 1qpid-cppWill not fix
MRG for RHEL-5 v. 2cumin-messagingFixedRHSA-2013:056106.03.2013
MRG for RHEL-5 v. 2mrg-releaseFixedRHSA-2013:056106.03.2013
MRG for RHEL-5 v. 2python-qpidFixedRHSA-2013:056106.03.2013
MRG for RHEL-5 v. 2qpid-cpp-mrgFixedRHSA-2013:056106.03.2013
MRG for RHEL-5 v. 2qpid-javaFixedRHSA-2013:056106.03.2013
MRG for RHEL-5 v. 2qpid-jcaFixedRHSA-2013:056106.03.2013
MRG for RHEL-5 v. 2qpid-qmfFixedRHSA-2013:056106.03.2013
MRG for RHEL-5 v. 2qpid-testsFixedRHSA-2013:056106.03.2013

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=861234qpid-cpp: long arrays of zero-width types cause a denial of service

EPSS

Процентиль: 87%
0.03537
Низкий

5 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 13 лет назад

The AMQP type decoder in Apache Qpid 0.20 and earlier allows remote attackers to cause a denial of service (memory consumption and server crash) via a large number of zero width elements in the client-properties map in a connection.start-ok message.

nvd
почти 13 лет назад

The AMQP type decoder in Apache Qpid 0.20 and earlier allows remote attackers to cause a denial of service (memory consumption and server crash) via a large number of zero width elements in the client-properties map in a connection.start-ok message.

debian
почти 13 лет назад

The AMQP type decoder in Apache Qpid 0.20 and earlier allows remote at ...

github
больше 3 лет назад

The AMQP type decoder in Apache Qpid 0.20 and earlier allows remote attackers to cause a denial of service (memory consumption and server crash) via a large number of zero width elements in the client-properties map in a connection.start-ok message.

EPSS

Процентиль: 87%
0.03537
Низкий

5 Medium

CVSS2