Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2012-4459

Опубликовано: 05 мар. 2013
Источник: redhat
CVSS2: 5
EPSS Низкий

Описание

Integer overflow in the qpid::framing::Buffer::checkAvailable function in Apache Qpid 0.20 and earlier allows remote attackers to cause a denial of service (crash) via a crafted message, which triggers an out-of-bounds read.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6qpid-cppAffected
Red Hat Enterprise MRG 1qpid-cppWill not fix
MRG for RHEL-5 v. 2cumin-messagingFixedRHSA-2013:056106.03.2013
MRG for RHEL-5 v. 2mrg-releaseFixedRHSA-2013:056106.03.2013
MRG for RHEL-5 v. 2python-qpidFixedRHSA-2013:056106.03.2013
MRG for RHEL-5 v. 2qpid-cpp-mrgFixedRHSA-2013:056106.03.2013
MRG for RHEL-5 v. 2qpid-javaFixedRHSA-2013:056106.03.2013
MRG for RHEL-5 v. 2qpid-jcaFixedRHSA-2013:056106.03.2013
MRG for RHEL-5 v. 2qpid-qmfFixedRHSA-2013:056106.03.2013
MRG for RHEL-5 v. 2qpid-testsFixedRHSA-2013:056106.03.2013

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=861241qpid-cpp: crash due to qpid::framing::Buffer::checkAvailable() wraparound

EPSS

Процентиль: 78%
0.01187
Низкий

5 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 13 лет назад

Integer overflow in the qpid::framing::Buffer::checkAvailable function in Apache Qpid 0.20 and earlier allows remote attackers to cause a denial of service (crash) via a crafted message, which triggers an out-of-bounds read.

nvd
почти 13 лет назад

Integer overflow in the qpid::framing::Buffer::checkAvailable function in Apache Qpid 0.20 and earlier allows remote attackers to cause a denial of service (crash) via a crafted message, which triggers an out-of-bounds read.

debian
почти 13 лет назад

Integer overflow in the qpid::framing::Buffer::checkAvailable function ...

github
больше 3 лет назад

Integer overflow in the qpid::framing::Buffer::checkAvailable function in Apache Qpid 0.20 and earlier allows remote attackers to cause a denial of service (crash) via a crafted message, which triggers an out-of-bounds read.

EPSS

Процентиль: 78%
0.01187
Низкий

5 Medium

CVSS2