Wednesday, August 5, 2020

Security Bulletin: IBM MQ could allow an attacker to cause a denial of service due to a memory leak caused by an error creating a dynamic queue. (CVE-2020-4375)

Aug 5, 2020 8:01 pm EDT

Categorized: Medium Severity

Share this post:

An error was found within the Dynamic queue logic that could cause a memory leak and be exploited by an attacker to cause a denial of service attack.

Affected product(s) and affected version(s):

Affected Product(s) Version(s)
IBM MQ 9.1 LTS
IBM MQ 9.0 LTS
IBM MQ 8.0
IBM MQ 9.1 CD
IBM WebSphere MQ 7.5
IBM WebSphere MQ 7.1

Refer to the following reference URLs for remediation and additional vulnerability details:  
Source Bulletin: https://www.ibm.com/support/pages/node/6255988



from IBM Product Security Incident Response Team https://ift.tt/3kg389l

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.