Back to search
CVE-2017-12174
Published: Mar 7, 2018
Modified: Aug 5, 2024
PUBLISHED
Description
It was found that when Artemis and HornetQ before 2.4.0 are configured with UDP discovery and JGroups discovery a huge byte array is created when receiving an unexpected multicast message. This may result in a heap memory exhaustion, full GC, or OutOfMemoryError.
| Vendor | Product | Versions |
|---|---|---|
Red Hat, Inc. | HornetQ/Artemis | affected before 2.4.0 |
Weaknesses (CWE)
References
RHSA-2018:0479
vendor-advisory
x_refsource_REDHAT
RHSA-2018:0481
vendor-advisory
x_refsource_REDHAT
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-12174
x_refsource_CONFIRM
RHSA-2018:0269
vendor-advisory
x_refsource_REDHAT
RHSA-2018:0270
vendor-advisory
x_refsource_REDHAT
RHSA-2018:0271
vendor-advisory
x_refsource_REDHAT
RHSA-2018:0268
vendor-advisory
x_refsource_REDHAT
RHSA-2018:0480
vendor-advisory
x_refsource_REDHAT
RHSA-2018:0275
vendor-advisory
x_refsource_REDHAT
RHSA-2018:0478
vendor-advisory
x_refsource_REDHAT
[activemq-commits] 20210127 [activemq-website] branch master updated: Publish CVE-2021-26118
mailing-list
x_refsource_MLIST
[activemq-commits] 20210127 [activemq-website] branch master updated: Publish CVE-2021-26117
mailing-list
x_refsource_MLIST
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now