CVE-2017-15699 PUBLISHED

Reported by apache · Published February 13, 2018

A Denial of Service vulnerability was found in Apache Qpid Dispatch Router versions 0.7.0 and 0.8.0. To exploit this vulnerability, a remote user must be able to establish an AMQP connection to the Qpid Dispatch Router and send a specifically crafted AMQP frame which will cause it to segfault and shut down.

Affected Products

VendorProductVersions
Apache Software FoundationApache Qpid Dispatch RouterApache Qpid Dispatch Router 0.7.0 and 0.8.0
Apache Software FoundationApache Qpid Dispatch RouterApache Qpid Dispatch Router 0.7.0 and 0.8.0

Timeline

References

Open in Interactive Console →