PT-2020-11009 · Ibm · Ibm Mq+1

Published

2020-03-16

·

Updated

2021-07-21

·

CVE-2019-4656

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions IBM MQ and IBM MQ Appliance versions 7.1, 7.5, 8.0, 9.0 LTS, 9.1 LTS, and 9.1 CD
Description The issue allows an authenticated user to perform a denial of service attack, which can cause the queue to crash and require a restart. This is due to an error in processing error messages.
Recommendations For IBM MQ and IBM MQ Appliance versions 7.1, 7.5, 8.0, 9.0 LTS, 9.1 LTS, and 9.1 CD, update to a version that includes the fix for the error in processing error messages to prevent the denial of service attack. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2019-4656

Affected Products

Ibm Mq
Ibm Mq Appliance