Back to bug 1404150

Who When What Removed Added
Andrej Nemec 2016-12-13 08:33:42 UTC Depends On 1404151
Andrej Nemec 2016-12-13 08:35:33 UTC Blocks 1404153
Summer Long 2016-12-22 01:49:40 UTC Whiteboard impact=moderate,public=20151229,reported=20161209,source=cve,cvss2=3.5/AV:N/AC:M/Au:S/C:N/I:N/A:P,cvss3=6.5/CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,cwe=CWE-400,fedora-all/rabbitmq-server=notaffected,epel-all/rabbitmq-server=affected,rhscon-2/rabbitmq-server=new,openstack-5/rabbitmq-server=new,openstack-6/rabbitmq-server=new,openstack-7/rabbitmq-server=new,openstack-8/rabbitmq-server=new,openstack-9/rabbitmq-server=notaffected,openstack-10/rabbitmq-server=notaffected impact=moderate,public=20151229,reported=20161209,source=cve,cvss2=6.3/AV:N/AC:M/Au:S/C:N/I:N/A:C,cvss3=6.5/CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,cwe=CWE-400,fedora-all/rabbitmq-server=notaffected,epel-all/rabbitmq-server=affected,rhscon-2/rabbitmq-server=new,openstack-5/rabbitmq-server=new,openstack-6/rabbitmq-server=new,openstack-7/rabbitmq-server=new,openstack-8/rabbitmq-server=new,openstack-9/rabbitmq-server=notaffected,openstack-10/rabbitmq-server=notaffected
Summer Long 2017-01-15 23:29:03 UTC Whiteboard impact=moderate,public=20151229,reported=20161209,source=cve,cvss2=6.3/AV:N/AC:M/Au:S/C:N/I:N/A:C,cvss3=6.5/CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,cwe=CWE-400,fedora-all/rabbitmq-server=notaffected,epel-all/rabbitmq-server=affected,rhscon-2/rabbitmq-server=new,openstack-5/rabbitmq-server=new,openstack-6/rabbitmq-server=new,openstack-7/rabbitmq-server=new,openstack-8/rabbitmq-server=new,openstack-9/rabbitmq-server=notaffected,openstack-10/rabbitmq-server=notaffected impact=moderate,public=20151229,reported=20161209,source=cve,cvss2=6.3/AV:N/AC:M/Au:S/C:N/I:N/A:C,cvss3=6.5/CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,cwe=CWE-400,fedora-all/rabbitmq-server=notaffected,epel-all/rabbitmq-server=affected,rhscon-2/rabbitmq-server=new,openstack-5/rabbitmq-server=affected,openstack-6/rabbitmq-server=affected,openstack-7/rabbitmq-server=affected,openstack-8/rabbitmq-server=affected,openstack-9/rabbitmq-server=notaffected,openstack-10/rabbitmq-server=notaffected
Summer Long 2017-01-15 23:30:13 UTC Whiteboard impact=moderate,public=20151229,reported=20161209,source=cve,cvss2=6.3/AV:N/AC:M/Au:S/C:N/I:N/A:C,cvss3=6.5/CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,cwe=CWE-400,fedora-all/rabbitmq-server=notaffected,epel-all/rabbitmq-server=affected,rhscon-2/rabbitmq-server=new,openstack-5/rabbitmq-server=affected,openstack-6/rabbitmq-server=affected,openstack-7/rabbitmq-server=affected,openstack-8/rabbitmq-server=affected,openstack-9/rabbitmq-server=notaffected,openstack-10/rabbitmq-server=notaffected impact=moderate,public=20151229,reported=20161209,source=cve,cvss2=6.3/AV:N/AC:M/Au:S/C:N/I:N/A:C,cvss3=6.5/CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,cwe=CWE-400,fedora-all/rabbitmq-server=notaffected,epel-all/rabbitmq-server=affected,rhscon-2/rabbitmq-server=new,openstack-5/rabbitmq-server=affected,openstack-6/rabbitmq-server=affected,openstack-7/rabbitmq-server=affected,openstack-8/rabbitmq-server=affected,openstack-9/rabbitmq-server=notaffected,openstack-10/rabbitmq-server=notaffected,openstack-11/rabbitmq-server=notaffected
Summer Long 2017-01-15 23:30:27 UTC CC jjoyce
Summer Long 2017-01-15 23:35:11 UTC Depends On 1413415
Summer Long 2017-01-15 23:35:25 UTC Depends On 1413416
Summer Long 2017-01-15 23:35:43 UTC Depends On 1413417
Summer Long 2017-01-15 23:35:56 UTC Depends On 1413418
Summer Long 2017-01-15 23:36:09 UTC Depends On 1413419
Summer Long 2017-01-16 00:35:34 UTC CC slong
Doc Text A resource-consumption flaw was found in RabbitMQ Server, where the lengths_age or lengths_incr parameters were not validated in the management plugin. Remote, authenticated users with certain privileges could exploit this flaw to cause a denial of service by passing values which were too large.
Siddharth Sharma 2017-02-06 07:34:11 UTC Whiteboard impact=moderate,public=20151229,reported=20161209,source=cve,cvss2=6.3/AV:N/AC:M/Au:S/C:N/I:N/A:C,cvss3=6.5/CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,cwe=CWE-400,fedora-all/rabbitmq-server=notaffected,epel-all/rabbitmq-server=affected,rhscon-2/rabbitmq-server=new,openstack-5/rabbitmq-server=affected,openstack-6/rabbitmq-server=affected,openstack-7/rabbitmq-server=affected,openstack-8/rabbitmq-server=affected,openstack-9/rabbitmq-server=notaffected,openstack-10/rabbitmq-server=notaffected,openstack-11/rabbitmq-server=notaffected impact=moderate,public=20151229,reported=20161209,source=cve,cvss2=6.3/AV:N/AC:M/Au:S/C:N/I:N/A:C,cvss3=6.5/CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,cwe=CWE-400,fedora-all/rabbitmq-server=notaffected,epel-all/rabbitmq-server=affected,rhscon-2/rabbitmq-server=wontfix,openstack-5/rabbitmq-server=affected,openstack-6/rabbitmq-server=affected,openstack-7/rabbitmq-server=affected,openstack-8/rabbitmq-server=affected,openstack-9/rabbitmq-server=notaffected,openstack-10/rabbitmq-server=notaffected,openstack-11/rabbitmq-server=notaffected
Summer Long 2017-03-15 23:04:23 UTC Status NEW CLOSED
Resolution --- ERRATA
Last Closed 2017-03-15 19:04:23 UTC
Product Security DevOps Team 2019-09-29 14:02:45 UTC Whiteboard impact=moderate,public=20151229,reported=20161209,source=cve,cvss2=6.3/AV:N/AC:M/Au:S/C:N/I:N/A:C,cvss3=6.5/CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,cwe=CWE-400,fedora-all/rabbitmq-server=notaffected,epel-all/rabbitmq-server=affected,rhscon-2/rabbitmq-server=wontfix,openstack-5/rabbitmq-server=affected,openstack-6/rabbitmq-server=affected,openstack-7/rabbitmq-server=affected,openstack-8/rabbitmq-server=affected,openstack-9/rabbitmq-server=notaffected,openstack-10/rabbitmq-server=notaffected,openstack-11/rabbitmq-server=notaffected

Back to bug 1404150