IBM WebSphere MQ Bugs Let Remote Users Deny Service
|
|
SecurityTracker Alert ID: 1022888 |
|
SecurityTracker URL: http://securitytracker.com/id/1022888
|
|
CVE Reference:
GENERIC-MAP-NOMATCH
(Links to External Site)
|
Date: Sep 10 2009
|
Impact:
Denial of service via network, Not specified
|
Fix Available: Yes Vendor Confirmed: Yes
|
Version(s): 6.0 - 7.0.1
|
Description:
Several vulnerabilities were reported in IBM WebSphere MQ. A remote user can cause denial of service conditions. The impact of one vulnerability was not specified.
A remote user can exploit a flaw in rriDecompress to cause denial of service conditions.
A user can cause a trap on the target server.
A user can overwrite memory contents when asynchronous consume or readahead functions are used. The impact was not specified.
|
Impact:
A remote user can cause denial of service conditions.
The impact of one vulnerability was not specified.
|
Solution:
The vendor has issued a fix (APARs IC62164, IC62450 and IZ56259).
The vendor's advisory is available at:
http://www-01.ibm.com/support/docview.wss?uid=swg24024153
|
Vendor URL: www-01.ibm.com/support/docview.wss?uid=swg24024153 (Links to External Site)
|
Cause:
Not specified
|
Underlying OS:
Linux (Any), UNIX (AIX), UNIX (HP/UX), UNIX (Solaris - SunOS), Windows (Any)
|
|
Message History:
None.
|
Source Message Contents
|
Date: Wed, 9 Sep 2009 16:19:28 -0400
Subject: IBM WebSphere MQ
|
> Combined fix for security vulnerability APARs IC62164, IC62450 and IZ56259
http://www-01.ibm.com/support/docview.wss?uid=swg24024153
|
|