Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:3584
HistoryFeb 15, 2017 - 6:56 a.m.

Denial Of Service (DoS)

2017-02-1506:56:48
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

0.045 Low

EPSS

Percentile

92.5%

zookeeper is vulnerable to denial of service (DoS) attacks. The vulnerability is possible because it does not properly handle four letter zookeeper commands (such as wchp /wchc/wchc ). Therefore, when non-trusted clients get access to the client port (i.e., if the zookeeper service is not protected using firewall), an attacker can launch DoS attack.

References