5

CVE-2012-4459

Integer overflow in the qpid::framing::Buffer::checkAvailable function in Apache Qpid 0.20 and earlier allows remote attackers to cause a denial of service (crash) via a crafted message, which triggers an out-of-bounds read.

Data is provided by the National Vulnerability Database (NVD)
ApacheQpid Version <= 0.20
ApacheQpid Version0.5
ApacheQpid Version0.6
ApacheQpid Version0.7
ApacheQpid Version0.8
ApacheQpid Version0.9
ApacheQpid Version0.10
ApacheQpid Version0.11
ApacheQpid Version0.12
ApacheQpid Version0.13
ApacheQpid Version0.14
ApacheQpid Version0.15
ApacheQpid Version0.16
ApacheQpid Version0.17
ApacheQpid Version0.18
ApacheQpid Version0.19
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.19% 0.768
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P