The Qpid server on Red Hat Satellite 6 does not properly restrict message types, which allows remote authenticated users with administrative access on a managed content host to execute arbitrary code via a crafted message, related to a pickle processing problem in pulp.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2017-10-18T16:00:00

Updated: 2024-08-06T06:41:07.880Z

Reserved: 2015-07-01T00:00:00

Link: CVE-2015-5164

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2017-10-18T16:29:00.247

Modified: 2017-11-08T15:53:16.077

Link: CVE-2015-5164

cve-icon Redhat

Severity : Moderate

Publid Date: 2015-07-28T00:00:00Z

Links: CVE-2015-5164 - Bugzilla