CVE-2012-2145

Severity CVSS v4.0:
Pending analysis
Type:
CWE-399 Resource Management Errors
Publication date:
28/09/2012
Last modified:
11/04/2025

Description

Apache Qpid 0.17 and earlier does not properly restrict incoming client connections, which allows remote attackers to cause a denial of service (file descriptor consumption) via a large number of incomplete connections.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:apache:qpid:*:*:*:*:*:*:*:* 0.17 (including)
cpe:2.3:a:apache:qpid:0.6:*:*:*:*:*:*:*
cpe:2.3:a:apache:qpid:0.7:*:*:*:*:*:*:*
cpe:2.3:a:apache:qpid:0.8:*:*:*:*:*:*:*
cpe:2.3:a:apache:qpid:0.9:*:*:*:*:*:*:*
cpe:2.3:a:apache:qpid:0.10:*:*:*:*:*:*:*
cpe:2.3:a:apache:qpid:0.12:*:*:*:*:*:*:*
cpe:2.3:a:apache:qpid:0.14:*:*:*:*:*:*:*
cpe:2.3:a:apache:qpid:0.16:*:*:*:*:*:*:*