CVE Database
/

CVE-2017-5637

Back to search

CVE-2017-5637

Published: Oct 10, 2017

Modified: Sep 17, 2024

PUBLISHED

Description

Two four letter word commands "wchp/wchc" are CPU intensive and could cause spike of CPU utilization on Apache ZooKeeper server if abused, which leads to the server unable to serve legitimate client requests. Apache ZooKeeper thru version 3.4.9 and 3.5.2 suffer from this issue, fixed in 3.4.10, 3.5.3, and later.

VendorProductVersions

Apache Software Foundation

Apache ZooKeeper

affected
3.4.0 to 3.4.9
affected
3.5.0 to 3.5.2

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now