QID 375568
Date Published: 2021-05-20
QID 375568: IBM MQ and IBM MQ Appliance DOS Vulnerability (1106517)
The IBM MQ Appliance is a hardware product that provides IBM MQ ready installed and ready to use. The main use of IBM MQ is to send or exchange messages. One application puts a message on a queue on one computer, and another application gets the same message from another queue on a different computer.
Affected Versions:
IBM MQ/Appliance V8.0.0.0 - 8.0.0.13
IBM MQ V9.0.0.0 - 9.0.0.7
Operating System: Windows/Linux
It checks for vulnerable IBM MQ/WebSphere MQ versions.
QID Detection Logic(unauthenticated):
This QID checks for the vulnerable version of IBM MQ remotely
Successful exploitation could allow a remote attacker with intimate knowledge of the server to cause a denial of service when receiving data on the channel.
Solution
The vendor has released a fix to resolve the issue, please refer to 1106517 for more information.
Vendor References
- 1106517 -
www.ibm.com/support/pages/node/1106517
CVEs related to QID 375568
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| 1106517 |
|