QID 980943
QID 980943: Java (maven) Security Update for org.apache.qpid:qpid-broker-plugins-amqp-1-0-protocol (GHSA-q66c-h853-gqw2)
The AMQP 0-8, 0-9, 0-91, and 0-10 connection handling in Apache Qpid Java before 6.0.3 might allow remote attackers to bypass authentication and consequently perform actions via vectors related to connection state logging.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-q66c-h853-gqw2 for updates pertaining to this vulnerability.
Vendor References
- GHSA-q66c-h853-gqw2 -
github.com/advisories/GHSA-q66c-h853-gqw2
CVEs related to QID 980943
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-q66c-h853-gqw2 | org.apache.qpid:qpid-broker-plugins-amqp-0-8-protocol |
|
|
| GHSA-q66c-h853-gqw2 | org.apache.qpid:qpid-broker-plugins-amqp-1-0-protocol |
|