Apache Qpid (qpidd) Denial of Service Vulnerability
BID:55608
Info
Apache Qpid (qpidd) Denial of Service Vulnerability
| Bugtraq ID: | 55608 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2012-2145 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 19 2012 12:00AM |
| Updated: | Sep 19 2012 12:00AM |
| Credit: | Vincent Danen |
| Vulnerable: |
Red Hat MRG Messaging for RHEL Server 2 Red Hat MRG Management RHEL 5 Server 2 Red Hat Enterprise Linux Workstation 6 Red Hat Enterprise Linux Server 6 Red Hat Enterprise Linux HPC Node 6 Red Hat Enterprise Linux Desktop 6 |
| Not Vulnerable: | |
Discussion
Apache Qpid (qpidd) Denial of Service Vulnerability
Apache Qpid (qpidd) is prone to a denial-of-service vulnerability.
Attackers can exploit this issue to cause the client to open an excessive amount of connections, denying service to legitimate connection requests.
Apache Qpid (qpidd) is prone to a denial-of-service vulnerability.
Attackers can exploit this issue to cause the client to open an excessive amount of connections, denying service to legitimate connection requests.
Exploit / POC
Apache Qpid (qpidd) Denial of Service Vulnerability
An attacker can use readily available tools to exploit this issue.
An attacker can use readily available tools to exploit this issue.
Solution / Fix
Apache Qpid (qpidd) Denial of Service Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Apache Qpid (qpidd) Denial of Service Vulnerability
References:
References: