|
|
Log in / Subscribe / Register

qpid-cpp: multiple vulnerabilities

Package(s):qpid-cpp CVE #(s):CVE-2015-0203 CVE-2015-0223 CVE-2015-0224
Created:March 10, 2015 Updated:June 22, 2015
Description: From the Red Hat advisory:

It was discovered that the Qpid daemon (qpidd) did not restrict access to anonymous users when the ANONYMOUS mechanism was disallowed. (CVE-2015-0223)

Multiple flaws were found in the way the Qpid daemon (qpidd) processed certain protocol sequences. An unauthenticated attacker able to send a specially crafted protocol sequence set could use these flaws to crash qpidd. (CVE-2015-0203, CVE-2015-0224)

Alerts:
Fedora FEDORA-2016-120b194a75 qpid-cpp 2016-03-09
Fedora FEDORA-2015-9503 qpid-cpp 2015-06-21
Red Hat RHSA-2015:0707-01 qpid 2015-03-19
Red Hat RHSA-2015:0708-01 qpid 2015-03-19
Red Hat RHSA-2015:0662-01 qpid-cpp 2015-03-09
Red Hat RHSA-2015:0661-01 qpid-cpp 2015-03-09
Red Hat RHSA-2015:0660-01 qpid-cpp 2015-03-09

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds