Thursday, February 23, 2017

IBM Security Bulletin: IBM WebSphere MQ cluster channel definition causes denial of service to cluster (CVE-2016-9009)

A cluster receiver channel definition could be altered in a way that leads to corruption in cluster repository information. This could lead to malfunction and a potential denial of service for an MQ cluster.

CVE(s): CVE-2016-9009

Affected product(s) and affected version(s):

IBM WebSphere MQ V8.0

IBM WebSphere MQ V8.0.0.0 – 8.0.0.5 maintenance levels.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2mgodTd
X-Force Database: http://ift.tt/2kQuWGa

The post IBM Security Bulletin: IBM WebSphere MQ cluster channel definition causes denial of service to cluster (CVE-2016-9009) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2mgoci7

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.