Back

LOW

ActiveMQ: DoS in client via shutdown command

Published Aug 1, 2019

Description

It was found that the Apache ActiveMQ client before 5.14.5 exposed a remote shutdown command in the ActiveMQConnection class. An attacker logged into a compromised broker could use this flaw to achieve denial of service on a connected client.

Affected products

Remediation

No remediation recorded yet.

Metrics

References (8)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Aug 1, 2019
Updated Aug 6, 2024
Reserved Sep 29, 2015
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Low
Public date Apr 19, 2017
GHSA-JVPP-HXJJ-5CCC