The AMQP type decoder in Apache Qpid 0.20 and earlier allows remote attackers to cause a denial of service (memory consumption and server crash) via a large number of zero width elements in the client-properties map in a connection.start-ok message.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2013-03-12T15:00:00Z
Updated: 2024-09-17T02:57:32.238Z
Reserved: 2012-08-21T00:00:00Z
Link: CVE-2012-4458
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2013-03-14T03:10:23.353
Modified: 2013-03-19T16:49:55.183
Link: CVE-2012-4458
Redhat