Red Hat AMQ Broker 7.9.4

CPE Details

Red Hat AMQ Broker 7.9.4
7.9.4
2022-06-27
14h40 +00:00
2022-06-29
09h15 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:redhat:amq_broker:7.9.4:*:*:*:*:*:*:*

Informations

Vendor

redhat

Product

amq_broker

Version

7.9.4

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2021-4040 2022-08-24 13h13 +00:00 A flaw was found in AMQ Broker. This issue can cause a partial interruption to the availability of AMQ Broker via an Out of memory (OOM) condition. This flaw allows an attacker to partially disrupt availability to the broker through a sustained attack of maliciously crafted messages. The highest threat from this vulnerability is system availability.
5.3
Medium
CVE-2022-1833 2022-06-21 12h23 +00:00 A flaw was found in AMQ Broker Operator 7.9.4 installed via UI using OperatorHub where a low-privilege user that has access to the namespace where the AMQ Operator is deployed has access to clusterwide edit rights by checking the secrets. The service account used for building the Operator gives more permission than expected and an attacker could benefit from it. This requires at least an already compromised low-privilege account or insider attack.
8.8
High