[ANNOUNCE] CVE-2015-7559 - DoS in client via shutdown command

Dejan Bosanac <[email protected]> Tue, 25 Apr 2017 10:47:45 +0200
Newsgroups gmane.comp.security.bugtraq,gmane.comp.java.activemq.devel,gmane.comp.java.openwebbeans.devel,gmane.comp.security.oss.general,gmane.comp.jakarta.avalon.user
Message-ID <CAGeh-pGUHvb09esu_-vekerggwQWU8i64btEE_qgYmkw5o4XUw__21426.6136674725$1493110079$gmane$org@mail.gmail.com>
There following security vulnerability was reported against Apache
ActiveMQ 5.14.4 and older versions.

Please check the following document and see if you’re affected by the issue.

http://activemq.apache.org/security-advisories.data/CVE-2015-7559-announcement.txt?version=1&modificationDate=1493024710000&api=v2

Apache ActiveMQ 5.14.5 with appropriate fixes was released and
are available for upgrade.


Regards
--
Dejan Bosanac
http://sensatic.net/about