[WID-SEC-2023-3037] Apache Camel: Mehrere Schwachstellen ermöglichen Denial of Service CVSS Base Score 7.5 (hoch) CVSS Temporal Score 6.5 (mittel) Remoteangriff ja Datum 30.11.2023 Stand UPDATE 06.07.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux Produktbeschreibung Apache Camel ist ein Integrations-Framework, das Enterprise Integration Patterns implementiert. Produkte UPDATE 05.07.2026 IBM SPSS Modeler UPDATE 25.01.2026 Dell Data Protection Advisor <19.12 UPDATE 24.11.2024 Red Hat JBoss Enterprise Application Platform <7.1.8 Red Hat JBoss Enterprise Application Platform <7.3.11 UPDATE 14.10.2024 Broadcom Brocade SANnav <2.3.0a Broadcom Brocade SANnav <2.3.1a UPDATE 01.07.2024 Splunk Splunk Enterprise <9.2.1 Splunk Splunk Enterprise <9.1.4 Splunk Splunk Enterprise <9.0.9 UPDATE 20.02.2024 Atlassian Confluence <7.19.18 Atlassian Confluence <8.5.5 Atlassian Confluence <8.7.2 Atlassian Confluence <8.8.0 UPDATE 04.02.2024 IBM App Connect Enterprise UPDATE 16.01.2024 IBM Security Guardium UPDATE 10.01.2024 Red Hat Integration Camel K 1 UPDATE 07.12.2023 Red Hat Integration Camel Extensions for Quarkus 1 UPDATE 04.12.2023 Red Hat Enterprise Linux 30.11.2023 Apache Camel <3.2.0 Angriff Angriff Ein entfernter anonymer Angreifer kann mehrere Schwachstellen in Apache Camel ausnutzen, um einen Denial-of-Service-Zustand zu erzeugen. CVE Informationen Versionshistorie Feedback zum Advisory geben
Multiple vulnerabilities in Apache Camel (CVE not specified) allow a remote, anonymous attacker to cause a Denial of Service, with a CVSS Base Score of 7.5 (High). The core affected version is Apache Camel prior to 3.2.0, and the advisory lists numerous downstream products from IBM, Dell, Red Hat, Splunk, Atlassian, and Broadcom that incorporate the vulnerable library. The mitigation status is marked as yes, indicating patches or workarounds are available for the listed products.