5

CVE-2012-4458

The AMQP type decoder in Apache Qpid 0.20 and earlier allows remote attackers to cause a denial of service (memory consumption and server crash) via a large number of zero width elements in the client-properties map in a connection.start-ok message.

Data is provided by the National Vulnerability Database (NVD)
ApacheQpid Version <= 0.20
ApacheQpid Version0.5
ApacheQpid Version0.6
ApacheQpid Version0.7
ApacheQpid Version0.8
ApacheQpid Version0.9
ApacheQpid Version0.10
ApacheQpid Version0.11
ApacheQpid Version0.12
ApacheQpid Version0.13
ApacheQpid Version0.14
ApacheQpid Version0.15
ApacheQpid Version0.16
ApacheQpid Version0.17
ApacheQpid Version0.18
ApacheQpid Version0.19
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 2.64% 0.843
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P