CVE Database
/

CVE-2017-15701

Back to search

CVE-2017-15701

Published: Dec 1, 2017

Modified: Sep 16, 2024

PUBLISHED

Description

In Apache Qpid Broker-J versions 6.1.0 through 6.1.4 (inclusive) the broker does not properly enforce a maximum frame size in AMQP 1.0 frames. A remote unauthenticated attacker could exploit this to cause the broker to exhaust all available memory and eventually terminate. Older AMQP protocols are not affected.

VendorProductVersions

Apache Software Foundation

Apache Qpid Broker-J

affected
6.1.0, 6.1.1, 6.1.2, 6.1.3, and 6.1.4

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now