Lucene search

K
redhatcveRedhat.comRH:CVE-2017-15699
HistoryNov 14, 2017 - 11:49 p.m.

CVE-2017-15699

2017-11-1423:49:29
redhat.com
access.redhat.com
9

0.001 Low

EPSS

Percentile

41.0%

A Denial of Service vulnerability was found in Apache Qpid Dispatch Router versions 0.7.0 and 0.8.0. To exploit this vulnerability, a remote user must be able to establish an AMQP connection to the Qpid Dispatch Router and send a specifically crafted AMQP frame which will cause it to segfault and shut down.

Mitigation

To protect against this vulnerability, users need to ensure the interconnect route endpoints are protected by authentication. Please refer to official documentation on how to secure the endpoints: <https://access.redhat.com/documentation/en-us/red_hat_jboss_amq/7.0/html-single/using_amq_interconnect/#security-1&gt;

0.001 Low

EPSS

Percentile

41.0%