4
CVSSv2

CVE-2009-5006

Published: 18/10/2010 Updated: 15/07/2021
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:N/I:N/A:P

Vulnerability Summary

The SessionAdapter::ExchangeHandlerImpl::checkAlternate function in broker/SessionAdapter.cpp in the C++ Broker component in Apache Qpid prior to 0.6, as used in Red Hat Enterprise MRG prior to 1.3 and other products, allows remote authenticated users to cause a denial of service (NULL pointer dereference, daemon crash, and cluster outage) by attempting to modify the alternate of an exchange.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apache qpid

redhat enterprise_mrg 1.2

redhat enterprise_mrg 1.0.2

redhat enterprise_mrg 1.1.2

redhat enterprise_mrg 1.0.3

redhat enterprise_mrg 1.0

redhat enterprise_mrg

redhat enterprise_mrg 1.0.1

redhat enterprise_mrg 1.1.1

Vendor Advisories

Synopsis Moderate: Red Hat Enterprise MRG Messaging and Grid Version 13 Type/Severity Security Advisory: Moderate Topic Updated packages that fix two security issues, several bugs, and addmultiple enhancements are now available as part of the ongoing support andmaintenance of Red Hat Enterprise MRG Messagi ...