In Spring AMQP versions 2.2.0 - 2.2.19 and 2.3.0 - 2.3.11, the Spring AMQP Message object, in its toString() method, will create a new String object from the message body, regardless of its size. This can cause an OOM Error with a large message
2021-11-30T19:15:08.610
2024-11-21T05:49:31.170
Modified
CVSSv3.1: 6.5 (MEDIUM)
AV:N/AC:L/Au:S/C:N/I:N/A:P
8.0
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | vmware | spring_advanced_message_queuing_protocol | < 2.2.19 | Yes |
| Application | vmware | spring_advanced_message_queuing_protocol | < 2.3.11 | Yes |