Openwall GNU/*/Linux - a small security-enhanced Linux distro for servers
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date: Tue, 24 May 2016 10:41:08 +0200
From: Dejan Bosanac <>
To: "" <>, 
	"" <>, 
	Apache Security Response Team <>,,
Subject: [ANNOUNCE] CVE-2016-3088: ActiveMQ Fileserver web application vulnerabilities

There's a security vulnerability reported against Apache
ActiveMQ 5.13.2 and older versions.

Please check the following document and see if you’re affected by the issue.

Vulnerability is similar to the one reported in CVE-2015-1830 (
The fileserver web application will be removed in 5.14.0 release and users
are advised not to use it and disable it in older versions.

Dejan Bosanac

Powered by blists - more mailing lists

Your e-mail address:

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Powered by Openwall GNU/*/Linux - Powered by OpenVZ