FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2024-12-18 00:09:58 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
7003b62d-7252-46ff-a9df-1b1900f1e65bRabbitMQ -- Denial of Service via improper input validation

Jonathon Knudsen of Synopsys Cybersecurity Research Center reports:

All versions prior to 3.8.16 are prone to a denial of service vulnerability due to improper input validation in AMQP 1.0 client connection endpoint. A malicious client can exploit the vulnerability by sending malicious AMQP messages to the target RabbitMQ instance having the AMQP 1.0 plugin enabled.


Discovery 2021-05-10
Entry 2021-06-28
rabbitmq
< 3.8.16

CVE-2021-22116
https://tanzu.vmware.com/security/cve-2021-22116
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-22116
b1aa54ae-74cb-42a0-b462-cbb6831c5c50RabbitMQ -- Denial of Service in AMQP1.0 plugin

Pivotal.io reports:

All versions prior to 3.8.16 are prone to a denial of service vulnerability due to improper input validation in AMQP 1.0 client connection endpoint.


Discovery 2021-05-10
Entry 2021-05-10
rabbitmq
< 3.8.16

CVE-2016-9877
https://tanzu.vmware.com/security/cve-2021-22116
https://github.com/rabbitmq/rabbitmq-server/releases/tag/v3.8.19