DoS Vulnerability in Apache Qpid Affecting Red Hat Enterprise MRG and Others
CVE-2010-3083

Currently unrated

Key Information:

Vendor
Apache
Vendor
CVE Published:
12 October 2010

Summary

A vulnerability in the Apache Qpid message broker can permit a remote attacker to disrupt service by connecting to the SSL port without completing the required SSL handshake. This behavior can lead to a denial of service (DoS), causing the server to become unresponsive and ultimately leading to a daemon outage. This issue affects versions of Apache Qpid used in various deployments, including Red Hat Enterprise MRG, prior to the patch in version 1.2.2.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.