CVE-2018-8030
HIGHApache Qpid Broker-J 7.0.0-7.0.4 - Denial of Service via Oversized AMQP Message
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2018-8030. PoCs published by dawetmaster, andikahilmy.
AI-analyzed exploit summary This repository contains source code for Apache Qpid Broker-J but lacks any exploit code or technical analysis related to CVE-2018-8030. It appears to be a partial or incomplete snapshot of the project.
Description
A Denial of Service vulnerability was found in Apache Qpid Broker-J versions 7.0.0-7.0.4 when AMQP protocols 0-8, 0-9 or 0-91 are used to publish messages with size greater than allowed maximum message size limit (100MB by default). The broker crashes due to the defect. AMQP protocols 0-10 and 1.0 are not affected.
Exploits (2)
This repository contains source code for Apache Qpid Broker-J but lacks any exploit code or technical analysis related to CVE-2018-8030. It appears to be a partial or incomplete snapshot of the project.
This repository contains the vulnerable source code for Apache Qpid Broker-J (CVE-2018-8030), specifically the BerkeleyDB storage module. The code includes the vulnerable AMQShortStringEncoding class, which is part of the deserialization vulnerability in the BDB message store.
References (2)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H