CVE-2012-3467
Publication date 27 August 2012
Last updated 24 July 2024
Ubuntu priority
Description
Apache QPID 0.14, 0.16, and earlier uses a NullAuthenticator mechanism to authenticate catch-up shadow connections to AMQP brokers, which allows remote attackers to bypass authentication.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| qpid-cpp | ||
| 16.04 LTS xenial |
Not affected
|
|
| 14.04 LTS trusty | Not in release | |