What is CVE-2026-67555?
Apache Qpid Proton-Dotnet through version 1.0.0 did not properly limit the maximum number of transfer frames per incoming delivery. This flaw allows an authenticated attacker to cause excessive resource consumption leading to a potential denial of service. Users are recommended to upgrade to version 1 to mitigate the issue.
Azərbaycanca: Apache Qpid Proton-Dotnet-in 1.0.0 və əvvəlki versiyalarında daxil olan çatdırılmalar üzrə maksimum transfer frame sayı idarə edilə bilmirdi. Bu zəiflik autentifikasiya olunmuş hücumçuya həddindən artıq resurs istehlakına səbəb olaraq denial of service yaratmağa imkan verir. Təsirə məruz qalan istifadəçilərə 1-ci versiyaya yüksəlmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-400; shared vendor: Apache
FAQ2
Which versions of Apache Qpid Proton-Dotnet are affected by CVE-2026-67555?
This vulnerability affects Apache Qpid Proton-Dotnet through version 1.0.0.
What outcome can an attacker achieve by exploiting CVE-2026-67555?
An authenticated attacker can cause excessive resource consumption leading to a potential denial of service.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.