First published: Fri Sep 10 2010(Updated: )
sys/ssl/SslSocket.cpp in qpidd in Apache Qpid, as used in Red Hat Enterprise MRG before 1.2.2 and other products, when SSL is enabled, allows remote attackers to cause a denial of service (daemon outage) by connecting to the SSL port but not participating in an SSL handshake.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apache Qpid | =0.5 | |
Apache Qpid | =0.6 | |
Redhat Enterprise Mrg | <=1.2 | |
Redhat Enterprise Mrg | =1.0 | |
Redhat Enterprise Mrg | =1.0.1 | |
Redhat Enterprise Mrg | =1.0.2 | |
Redhat Enterprise Mrg | =1.0.3 | |
Redhat Enterprise Mrg | =1.1.1 | |
Redhat Enterprise Mrg | =1.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.