IBM MQ and IBM MQ Appliance 7.1, 7.5, 8.0, 9.0 LTS, 9.1 LTS, and 9.1 CD is vulnerable to a denial of service attack that would allow an authenticated user to crash the queue and require a restart due to an error processing error messages. IBM X-Force ID: 170967.
2020-03-16T16:15:12.670
2024-11-21T04:43:56.300
Modified
CVSSv3.1: 6.5 (MEDIUM)
AV:N/AC:L/Au:S/C:N/I:N/A:P
8.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | mq | < 8.0.0.14 | Yes |
Application | ibm | mq | ≤ 9.0.0.9 | Yes |
Application | ibm | mq | < 9.1.4 | Yes |
Application | ibm | mq | < 9.1.0.4 | Yes |
Application | ibm | mq_appliance | < 8.0.0.14 | Yes |
Application | ibm | websphere_mq | ≤ 7.5.0.9 | Yes |
Operating System | hp | hp-ux | - | No |
Operating System | ibm | aix | - | No |
Operating System | linux | linux_kernel | - | No |
Operating System | microsoft | windows | - | No |
Operating System | oracle | solaris | - | No |