CVE-2017-15701 is a vulnerability in Apache Qpid Broker J
Published on December 1, 2017
In Apache Qpid Broker-J versions 6.1.0 through 6.1.4 (inclusive) the broker does not properly enforce a maximum frame size in AMQP 1.0 frames. A remote unauthenticated attacker could exploit this to cause the broker to exhaust all available memory and eventually terminate. Older AMQP protocols are not affected.
Products Associated with CVE-2017-15701
Want to know whenever a new CVE is published for Apache Qpid Broker J? stack.watch will email you.
Affected Versions
Apache Software Foundation Apache Qpid Broker-J Version 6.1.0, 6.1.1, 6.1.2, 6.1.3, and 6.1.4 is affected by CVE-2017-15701Exploit Probability
EPSS
2.28%
Percentile
84.56%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.