Lucene search

K
cve[email protected]CVE-2011-0314
HistoryJan 12, 2011 - 1:00 a.m.

CVE-2011-0314

2011-01-1201:00:02
CWE-119
web.nvd.nist.gov
18
ibm
websphere
mq
buffer overflow
security vulnerability
remote code execution
denial of service
nvd
cve-2011-0314

6.5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:P/I:P/A:P

8 High

AI Score

Confidence

High

0.265 Low

EPSS

Percentile

96.8%

Heap-based buffer overflow in IBM WebSphere MQ 6.0 before 6.0.2.11 and 7.0 before 7.0.1.5 allows remote authenticated users to execute arbitrary code or cause a denial of service (queue manager crash) by inserting an invalid message into the queue.

Affected configurations

NVD
Node
ibmwebsphere_mqMatch6.0
OR
ibmwebsphere_mqMatch6.0.1.0
OR
ibmwebsphere_mqMatch6.0.1.1
OR
ibmwebsphere_mqMatch6.0.2.0
OR
ibmwebsphere_mqMatch6.0.2.1
OR
ibmwebsphere_mqMatch6.0.2.2
OR
ibmwebsphere_mqMatch6.0.2.3
OR
ibmwebsphere_mqMatch6.0.2.4
OR
ibmwebsphere_mqMatch6.0.2.5
OR
ibmwebsphere_mqMatch6.0.2.6
OR
ibmwebsphere_mqMatch6.0.2.7
OR
ibmwebsphere_mqMatch6.0.2.8
OR
ibmwebsphere_mqMatch6.0.2.9
OR
ibmwebsphere_mqMatch6.0.2.10
Node
ibmwebsphere_mqMatch7.0
OR
ibmwebsphere_mqMatch7.0.0.1
OR
ibmwebsphere_mqMatch7.0.0.2
OR
ibmwebsphere_mqMatch7.0.1
OR
ibmwebsphere_mqMatch7.0.1.0
OR
ibmwebsphere_mqMatch7.0.1.1
OR
ibmwebsphere_mqMatch7.0.1.2
OR
ibmwebsphere_mqMatch7.0.1.3
OR
ibmwebsphere_mqMatch7.0.1.4

6.5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:P/I:P/A:P

8 High

AI Score

Confidence

High

0.265 Low

EPSS

Percentile

96.8%

Related for CVE-2011-0314