Описание
Stomper 5e2741e is vulnerable to Denial of Service. When a broker sends data to a client whose TCP connection was already closed by the peer, the server process receives SIGPIPE and immediately terminates, resulting in a denial of service. Any unauthenticated client can trigger the crash by closing the socket at specific points.
A flaw was found in Stomper. An unauthenticated client can trigger a denial of service by closing their TCP connection at specific points while a broker is sending data. This action causes the server process to receive a SIGPIPE signal, leading to its immediate termination and a denial of service for legitimate users.
Отчет
A Denial of Service flaw was found in Stomper. An unauthenticated remote client can trigger an unhandled SIGPIPE signal by prematurely closing its TCP connection while the server is writing data to the socket. Because the process fails to ignore or handle SIGPIPE during active write operations, the daemon terminates abruptly. Red Hat default security controls (such as process isolation and systemd service auto-restart directives) restrict the failure strictly to an availability impact on the message broker service, without allowing privilege escalation or memory corruption.
Меры по смягчению последствий
Configure network firewalls or ingress access controls to limit access to the STOMP server port strictly to trusted IP addresses. Alternatively, run the broker within a process manager or container platform configured to automatically restart the service upon abrupt termination.
Дополнительная информация
Статус:
EPSS
7.5 High
CVSS3
Связанные уязвимости
Stomper 5e2741e is vulnerable to Denial of Service. When a broker sends data to a client whose TCP connection was already closed by the peer, the server process receives SIGPIPE and immediately terminates, resulting in a denial of service. Any unauthenticated client can trigger the crash by closing the socket at specific points.
Stomper 5e2741e is vulnerable to Denial of Service. When a broker sends data to a client whose TCP connection was already closed by the peer, the server process receives SIGPIPE and immediately terminates, resulting in a denial of service. Any unauthenticated client can trigger the crash by closing the socket at specific points.
Stomper 5e2741e is vulnerable to Denial of Service. When a broker sends data to a client whose TCP connection was already closed by the peer, the server process receives SIGPIPE and immediately terminates, resulting in a denial of service. Any unauthenticated client can trigger the crash by closing the socket at specific points.
EPSS
7.5 High
CVSS3