Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:24192
HistoryApr 10, 2020 - 12:48 a.m.

Denial Of Service (DoS)

2020-04-1000:48:49
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
2

0.007 Low

EPSS

Percentile

81.0%

Red Hat Enterprise MRG (Messaging, Realtime and Grid) is vulnerable to Denial Of Service (DoS). Due to a flaw in the way SSL connections to the MRG Messaging broker were handled, a connection (from a user or client application) to the broker’s SSL port would prevent the broker from responding to any other connections on that port, until the first connection’s SSL handshake completed or failed. A remote user could use this flaw to block connections from legitimate clients. Note that this issue only affected connections to the SSL port. The broker does not listen for SSL connections by default.

0.007 Low

EPSS

Percentile

81.0%

Related for VERACODE:24192