Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-46120
HistoryOct 25, 2023 - 6:17 p.m.

Memory corruption

2023-10-2518:17:00
PRIOn knowledge base
www.prio-n.com
6
memory corruption
rabbitmq
java client
oom error
dos attack
vulnerability
patched

7.6 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

59.0%

The RabbitMQ Java client library allows Java and JVM-based applications to connect to and interact with RabbitMQ nodes. maxBodyLebgth was not used when receiving Message objects. Attackers could send a very large Message causing a memory overflow and triggering an OOM Error. Users of RabbitMQ may suffer from DoS attacks from RabbitMQ Java client which will ultimately exhaust the memory of the consumer. This vulnerability was patched in version 5.18.0.

CPENameOperatorVersion
rabbitmq_java_clientlt5.18.0

7.6 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

59.0%