What is CVE-2026-68077?
CVE-2026-68077 is a denial of service (DoS) vulnerability in Apache Qpid Broker-J up to version 10.0.1, where an authenticated attacker can craft a disposition frame with large or illegal ranges causing excessive CPU usage. Users are advised to upgrade to version 10.1.0 to resolve the issue.
Azərbaycanca: CVE-2026-68077, Apache Qpid Broker-J-in 10.0.1 versiyasına qədər təsir edən autentifikasiya olunmuş istifadəçi tərəfindən denial of service (DoS) zəifliyidir. Hücumçu, böyük və ya qeyri-qanuni aralıqlar olan disposition frame-lər göndərərək CPU-nu həddən artıq yükləyə bilər. İstifadəçilərə 10.1.0 versiyasına yüksəlmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-400; shared vendor: Apache
FAQ2
Which software is affected by CVE-2026-68077?
CVE-2026-68077 affects Apache Qpid Broker-J up to version 10.0.1.
How can I fix CVE-2026-68077?
To fix the vulnerability, you should upgrade Apache Qpid Broker-J to version 10.1.0.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.