CVE-2019-4560
16.12.2019, 16:15
IBM MQ and IBM MQ Appliance 9.1 CD, 9.1 LTS, 9.0 LTS, and 8.0 is vulnerable to a denial of service attack caused by channels processing poorly formatted messages. IBM X-Force ID: 166357.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ibm | mq_appliance | 8.0.0.0 ≤ 𝑥 < 8.0.0.13 |
| ibm | mq_appliance | 9.0.0.0 ≤ 𝑥 < 9.0.0.8 |
| ibm | mq_appliance | 9.1.0.0 ≤ 𝑥 < 9.1.0.4 |
| ibm | mq_appliance | 9.1.1 ≤ 𝑥 < 9.1.4 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| ibm | mq | 9.0.0.1 | CNA |
| ibm | mq | 8.0.0.1 | CNA |
| ibm | mq | 8.0.0.2 | CNA |
| ibm | mq | 8.0.0.3 | CNA |
| ibm | mq | 8.0.0.4 | CNA |
| ibm | mq | 8.0.0.5 | CNA |
| ibm | mq | 8.0.0.6 | CNA |
| ibm | mq | 8.0.0.7 | CNA |
| ibm | mq | 9.0.0.2 | CNA |
| ibm | mq | 8.0.0.8 | CNA |
| ibm | mq | 8.0.0.9 | CNA |
| ibm | mq | 9.0.0.3 | CNA |
| ibm | mq | 8.0.0.0 | CNA |
| ibm | mq | 8.0.0.10 | CNA |
| ibm | mq | 9.0.0.0 | CNA |
| ibm | mq | 9.0.0.4 | CNA |
| ibm | mq | 9.0.0.5 | CNA |
| ibm | mq | 9.1.0.0 | CNA |
| ibm | mq | 9.1.0.1 | CNA |
| ibm | mq | 9.1.1 | CNA |
| ibm | mq | 9.1.0.2 | CNA |
| ibm | mq | 9.1.2 | CNA |
| ibm | mq | 8.0.0.11 | CNA |
| ibm | mq | 9.0.0.6 | CNA |
| ibm | mq | 8.0.0.12 | CNA |
| ibm | mq | 9.1.0.3 | CNA |
| ibm | mq | 9.1.3 | CNA |
| ibm | mq | 9.0.0.7 | CNA |