CVE-2015-7559 PUBLISHED

It was found that the Apache ActiveMQ client before 5.14.5 exposed a remote shutdown command in the ActiveMQConnection class. An attacker logged into a compromised broker could use this flaw to achieve denial of service on a connected client.

EPSS 0.08% · 24.0th percentile

Risk Scores

EPSS Score
0.08%
24.0th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSactivemq0, 5.6.0+dfsg-1, 5.6.0+dfsg-1+deb7u1build0.14.04.1
Ubuntu:Pro:16.04:LTSactivemq0, 5.6.0+dfsg1-4+deb8u1ubuntu1, 5.6.0+dfsg1-5

Timeline

References

Open in Interactive Console →