CVE-2019-0222
28.03.2019, 22:29
In Apache ActiveMQ 5.0.0 - 5.15.8, unmarshalling corrupt MQTT frame can lead to broker Out of Memory exception making it unresponsive.Enginsight
| Vendor | Product | Version |
|---|---|---|
| apache | activemq | 5.0.0 ≤ 𝑥 ≤ 5.15.8 |
| netapp | e-series_santricity_web_services | - |
| oracle | communications_diameter_signaling_router | 8.0.0 |
| oracle | communications_diameter_signaling_router | 8.1 |
| oracle | communications_diameter_signaling_router | 8.2 |
| oracle | communications_diameter_signaling_router | 8.2.1 |
| oracle | enterprise_manager_base_platform | 12.1.0.5.0 |
| oracle | enterprise_manager_base_platform | 13.2.0.0.0 |
| oracle | enterprise_manager_base_platform | 13.3.0.0.0 |
| oracle | enterprise_repository | 12.1.3.0.0 |
| oracle | goldengate_stream_analytics | 𝑥 < 19.1.0.0.1 |
| oracle | identity_manager_connector | 9.0 |
| debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions
Debian Releases
Debian Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| activemq |
| ||||||||||||||
| mqtt-client |
|
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| activemq |
| ||||||||||||||||||||||||||||||
| mqtt-client |
|
References