PT-2018-5047 · Red Hat · Red Hat A-Mq 6+1

Jason Shepherd

·

Published

2018-08-01

·

Updated

2023-02-12

·

CVE-2016-8653

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions Red Hat JBoss Fuse 6 Red Hat A-MQ 6
Description A flaw was discovered in the JMX endpoint, allowing it to deserialize credentials passed to it. This could be exploited by an attacker to launch a denial of service attack.
Recommendations For Red Hat JBoss Fuse 6, consider disabling the JMX endpoint until a fix is available. For Red Hat A-MQ 6, restrict access to the JMX endpoint to minimize the risk of exploitation.

Fix

Deserialization of Untrusted Data

Weakness Enumeration

Related Identifiers

CVE-2016-8653

Affected Products

Red Hat A-Mq 6
Red Hat Jboss Fuse 6