Vulnerability Description
A Denial of Service vulnerability was found in Apache Qpid Dispatch Router versions 0.7.0 and 0.8.0. To exploit this vulnerability, a remote user must be able to establish an AMQP connection to the Qpid Dispatch Router and send a specifically crafted AMQP frame which will cause it to segfault and shut down.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apache | Qpid Dispatch | 0.7.0 |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/103067Broken LinkThird Party AdvisoryVDB Entry
- https://issues.apache.org/jira/browse/DISPATCH-924PatchThird Party Advisory
- http://www.securityfocus.com/bid/103067Broken LinkThird Party AdvisoryVDB Entry
- https://issues.apache.org/jira/browse/DISPATCH-924PatchThird Party Advisory
FAQ
What is CVE-2017-15699?
CVE-2017-15699 is a vulnerability with a CVSS score of 6.5 (MEDIUM). A Denial of Service vulnerability was found in Apache Qpid Dispatch Router versions 0.7.0 and 0.8.0. To exploit this vulnerability, a remote user must be able to establish an AMQP connection to the Qp...
How severe is CVE-2017-15699?
CVE-2017-15699 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-15699?
Check the references section above for vendor advisories and patch information. Affected products include: Apache Qpid Dispatch.