Lucene search

K
ibmIBM7C1FB71C6AA6631AFEBA0E37C951755BCFCEB6C49A041D7F4B017FC621D406FA
HistoryJun 16, 2018 - 9:31 p.m.

Security Bulletin: IBM QRadar SIEM is vulnerable to DOS attack via malicious packets. (CVE-2015-5044)

2018-06-1621:31:45
www.ibm.com
12

EPSS

0.003

Percentile

65.2%

Summary

QRadar Flow Collector DOS vulnerability while processing certain flows received from network

Vulnerability Details

CVE-ID: CVE-2015-5044

Description: IBM QRadar SIEM QFLOW component is susceptible to a DOS attack when an attacker sends certain packet types.

CVSS Base Score: 4.3 **CVSS Temporal Score:**See https://exchange.xforce.ibmcloud.com/vulnerabilities/106936 for the current score **CVSS Environmental Score:***Undefined CVSS Vector: CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

Affected Products and Versions

ยท IBM QRadar SIEM 7.2.n

ยท IBM QRadar SIEM 7.1.n

Remediation/Fixes

ยท IBM QRadar SIEM 7.2.5 Patch 4 Interim Fix 3

ยท IBM QRadar SIEM 7.1 MR2 Patch 11 Interim Fix 3

Workarounds and Mitigations

None

EPSS

0.003

Percentile

65.2%

Related for 7C1FB71C6AA6631AFEBA0E37C951755BCFCEB6C49A041D7F4B017FC621D406FA