Lucene search

K
osvGoogleOSV:GHSA-4R7G-7CPJ-5JR7
HistoryOct 19, 2018 - 4:41 p.m.

Apache Qpid Broker-J vulnerable to Denial of Service (DoS) via uncontrolled resource consumption

2018-10-1916:41:15
Google
osv.dev
6

0.006 Low

EPSS

Percentile

77.7%

In Apache Qpid Broker-J versions 6.1.0 through 6.1.4 (inclusive) the broker does not properly enforce a maximum frame size in AMQP 1.0 frames. A remote unauthenticated attacker could exploit this to cause the broker to exhaust all available memory and eventually terminate. Older AMQP protocols are not affected.

0.006 Low

EPSS

Percentile

77.7%

Related for OSV:GHSA-4R7G-7CPJ-5JR7