CVE Vulnerabilities

CVE-2019-4656

Published: Mar 16, 2020 | Modified: Jul 21, 2021
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

IBM MQ and IBM MQ Appliance 7.1, 7.5, 8.0, 9.0 LTS, 9.1 LTS, and 9.1 CD is vulnerable to a denial of service attack that would allow an authenticated user to crash the queue and require a restart due to an error processing error messages. IBM X-Force ID: 170967.

Affected Software

Name Vendor Start Version End Version
Mq Ibm 8.0.0.0 (including) 8.0.0.14 (excluding)
Mq Ibm 9.0.0.0 (including) 9.0.0.9 (including)
Mq Ibm 9.1.0 (including) 9.1.4 (excluding)
Mq Ibm 9.1.0.0 (including) 9.1.0.4 (excluding)
Mq_appliance Ibm 8.0.0.0 (including) 8.0.0.14 (excluding)
Websphere_mq Ibm 7.1.0.0 (including) 7.5.0.9 (including)

References