Vulnerability Details CVE-2018-8030
A Denial of Service vulnerability was found in Apache Qpid Broker-J versions 7.0.0-7.0.4 when AMQP protocols 0-8, 0-9 or 0-91 are used to publish messages with size greater than allowed maximum message size limit (100MB by default). The broker crashes due to the defect. AMQP protocols 0-10 and 1.0 are not affected.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.009
EPSS Ranking 74.8%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2018-8030
-
cpe:2.3:a:apache:qpid_broker-j:7.0.0
-
cpe:2.3:a:apache:qpid_broker-j:7.0.1
-
cpe:2.3:a:apache:qpid_broker-j:7.0.2
-
cpe:2.3:a:apache:qpid_broker-j:7.0.3
-
cpe:2.3:a:apache:qpid_broker-j:7.0.4