Lucene search

K
ibmIBM5669F74F589D8E5D10D271CCF4236C56C13AE28C93B0969EF655B6096CFD88BE
HistoryFeb 15, 2022 - 11:21 p.m.

Security Bulletin: IBM MQ is vulnerable to a denial of service attack caused by an issue within the channel process.(CVE-2021-39034)

2022-02-1523:21:59
www.ibm.com
31
ibm mq
version 9.1
solaris
denial of service
cve-2021-39034
apar it37896

EPSS

0.001

Percentile

35.4%

Summary

An issue was identified in the IBM MQ Version 9.1 queue manager channel process on Solaris platforms, that could be exploited by an attacker to cause a denial of service attack.

Vulnerability Details

CVEID:CVE-2021-39034
**DESCRIPTION:**IBM MQ is vulnerable to a denial of service attack caused by an issue within the channel process.
CVSS Base score: 5.3
CVSS Temporal Score: See: https://exchange.xforce.ibmcloud.com/vulnerabilities/213964 for the current score.
CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H)

Affected Products and Versions

Affected Product(s) Version(s)
IBM MQ 9.1 LTS

Remediation/Fixes

This issue is addressed under APAR IT37896

IBM MQ Version 9.1 LTS

Apply iFix 9.1.0.10-IBM-MQ-SolarisSparc64-LAIT37896

Workarounds and Mitigations

None

EPSS

0.001

Percentile

35.4%

Related for 5669F74F589D8E5D10D271CCF4236C56C13AE28C93B0969EF655B6096CFD88BE