HIGHMaven →
Apache ActiveMQ: Unchecked buffer length can cause excessive memory allocation
Apache ActiveMQ: Unchecked buffer length can cause excessive memory allocation
Affected packages
- org.apache.activemq:activemq-client— before 5.16.8
- org.apache.activemq:activemq-openwire-legacy— before 5.16.8
Exploit signal
- Known exploited (CISA KEV)
- No
- EPSS score
- —
- EPSS percentile
- —
EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.
Sources
- https://nvd.nist.gov/vuln/detail/CVE-2025-27533
- https://github.com/apache/activemq/commit/fc4372b9f0f72b8b5eed917f0019c5cea45c5d06
- https://github.com/apache/activemq
- https://issues.apache.org/jira/browse/AMQ-6596
- https://lists.apache.org/thread/8hcm25vf7mchg4zbbhnlx2lc5bs705hg
- https://lists.debian.org/debian-lts-announce/2025/06/msg00020.html
- http://www.openwall.com/lists/oss-security/2025/05/06/1
Structured record: https://osv.dev/vulnerability/GHSA-whxr-3p84-rf3c
Recommended response stack
Some links are affiliate links — HackTribune may earn a commission at no extra cost to you.
Get incidents like this as alerts for your stack.
Join the beta