QID 375102
Date Published: 2021-03-24
QID 375102: IBM MQ and IBM MQ Appliance Denial Of Service(DOS) Vulnerability(562175)
The IBM MQ Appliance is a hardware product that provides IBM MQ ready installed and ready to use.The main use of IBM MQ is to send or exchange messages. One application puts a message on a queue on one computer, and another application gets the same message from another queue on a different computer.
CVE-2017-1557: IBM MQ could allow an authenticated user with authority to send a specially crafted request that could cause a channel process to cease processing further requests.
Affected Versions:
IBM MQ and IBM MQ Appliance v8.0.0.0 to v8.0.0.7
IBM MQ v9.0.0.0 LTS to v9.0.0.1 LTS
IBM MQ and IBM MQ Appliance v9.0.1 CD to v9.0.3 CD
QID Detection Logic: (Authenticated)
Operating System: Linux
The QID runs the command "/opt/mqm/bin/dspmqver -v | grep -A3 '^Name'" and "/usr/mqm/bin/dspmqver -v | grep -A3 '^Name'" (for AIX only) to see if the system is running a vulnerable version of IBM MQ or not.
Operating System: Windows
It checks for vulnerable IBM MQ/WebSphere MQ versions.
QID Detection Logic(unauthenticated):
This QID checks for the vulnerable version of IBM MQ
Successful exploitation of this vulnerability could allow an authenticated user with authority to send a specially crafted request that could cause a channel process to cease processing further requests.
CVEs related to QID 375102
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| 562175 |
|