It was reported [1], [2] that Apache QPID would crash due to a NULL pointer dereference when a remote, authenticated user attempted to redeclare an existing exchange and add a new alternate exchange. This would result in a denial of service condition of the server. This was corrected upstream by r811188 [3]. [1] https://issues.apache.org/jira/browse/QPID-2080 [2] https://bugzilla.redhat.com/show_bug.cgi?id=517751 [3] http://svn.apache.org/viewvc?revision=811188&view=revision
This issue has been addressed in following products: MRG for RHEL-5 Via RHSA-2010:0773 https://rhn.redhat.com/errata/RHSA-2010-0773.html
This issue has been addressed in following products: Grid for MRG on RHEL-4 Messaging for MRG on RHEL-4 Grid Execute Node for MRG on RHEL-4 Messaging Base for MRG on RHEL-4 Via RHSA-2010:0774 https://rhn.redhat.com/errata/RHSA-2010-0774.html