Denial of Service Vulnerability in Apache Qpid by The Apache Software Foundation
CVE-2012-2145
Currently unrated
What is CVE-2012-2145?
Apache Qpid versions 0.17 and earlier are susceptible to a denial of service vulnerability due to inadequate restrictions on incoming client connections. This allows remote attackers to exploit the flaw by establishing an excessive number of incomplete connections, ultimately leading to file descriptor exhaustion and service disruption. To mitigate this risk, it is essential to implement connection limits and apply appropriate patches or upgrades provided by the vendor.