Логотип exploitDog
bind:CVE-2023-46120
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-46120

Количество 5

Количество 5

ubuntu логотип

CVE-2023-46120

около 2 лет назад

The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. `maxBodyLebgth` was not used when receiving Message objects. Attackers could send a very large Message causing a memory overflow and triggering an OOM Error. Users of RabbitMQ may suffer from DoS attacks from RabbitMQ Java client which will ultimately exhaust the memory of the consumer. This vulnerability was patched in version 5.18.0.

CVSS3: 4.9
EPSS: Низкий
nvd логотип

CVE-2023-46120

около 2 лет назад

The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. `maxBodyLebgth` was not used when receiving Message objects. Attackers could send a very large Message causing a memory overflow and triggering an OOM Error. Users of RabbitMQ may suffer from DoS attacks from RabbitMQ Java client which will ultimately exhaust the memory of the consumer. This vulnerability was patched in version 5.18.0.

CVSS3: 4.9
EPSS: Низкий
github логотип

GHSA-mm8h-8587-p46h

около 2 лет назад

RabbitMQ Java client's Lack of Message Size Limitation leads to Remote DoS Attack

CVSS3: 4.9
EPSS: Низкий
fstec логотип

BDU:2024-00247

около 2 лет назад

Уязвимость клиентского программного обеспечения для взаимодействия с брокером сообщений RabbitMQ Java client, связанная с неконтролируемым расходом ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 4.9
EPSS: Низкий
redos логотип

ROS-20240806-11

больше 1 года назад

Уязвимость rabbitmq-java-client

CVSS3: 4.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2023-46120

The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. `maxBodyLebgth` was not used when receiving Message objects. Attackers could send a very large Message causing a memory overflow and triggering an OOM Error. Users of RabbitMQ may suffer from DoS attacks from RabbitMQ Java client which will ultimately exhaust the memory of the consumer. This vulnerability was patched in version 5.18.0.

CVSS3: 4.9
1%
Низкий
около 2 лет назад
nvd логотип
CVE-2023-46120

The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. `maxBodyLebgth` was not used when receiving Message objects. Attackers could send a very large Message causing a memory overflow and triggering an OOM Error. Users of RabbitMQ may suffer from DoS attacks from RabbitMQ Java client which will ultimately exhaust the memory of the consumer. This vulnerability was patched in version 5.18.0.

CVSS3: 4.9
1%
Низкий
около 2 лет назад
github логотип
GHSA-mm8h-8587-p46h

RabbitMQ Java client's Lack of Message Size Limitation leads to Remote DoS Attack

CVSS3: 4.9
1%
Низкий
около 2 лет назад
fstec логотип
BDU:2024-00247

Уязвимость клиентского программного обеспечения для взаимодействия с брокером сообщений RabbitMQ Java client, связанная с неконтролируемым расходом ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 4.9
1%
Низкий
около 2 лет назад
redos логотип
ROS-20240806-11

Уязвимость rabbitmq-java-client

CVSS3: 4.9
1%
Низкий
больше 1 года назад

Уязвимостей на страницу