QID 378942
Date Published: 2023-10-18
QID 378942: IBM Spectrum Protect Operations Center Denial of Service (DoS) Vulnerability (7034039)
GraphQL Java is vulnerable to a denial of service, caused by a stack-based buffer overflow. By sending a specially crafted GraphQL query, a remote attacker could exploit this vulnerability to cause a stack consumption.
Affected Versions:
IBM Spectrum Protect Operations Center 8.1.0.000 - 8.1.19.xxx
QID Detection Logic(Authenticated):
This checks for vulnerable versions of IBM Spectrum Protect Operations Center
Successful exploitation could lead to a remote attacker to cause a stack consumption.
Solution
Vendor has released updated version to address this issue. Refer to 7034039 for details.
Vendor References
- 7034039 -
www.ibm.com/support/pages/node/7034039
CVEs related to QID 378942
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| 7034039 |
|