When using the OpenWire protocol in ActiveMQ versions 5.14.0 to 5.15.2 it was found that certain system details (such as the OS and kernel version) are exposed as plain text.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-2583-1 | activemq security update |
Github GHSA |
GHSA-7qm4-p377-fr2r | ActiveMQ's OpenWire protocol exposes certain system details as plain text |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2024-09-16T22:14:34.363Z
Reserved: 2017-10-21T00:00:00
Link: CVE-2017-15709
No data.
Status : Modified
Published: 2018-02-13T20:29:00.217
Modified: 2024-11-21T03:15:03.600
Link: CVE-2017-15709
OpenCVE Enrichment
No data.
Debian DLA
Github GHSA