CVE-2009-0435: Medium severity IBM AIX vulnerability
Unspecified vulnerability in the IBM Asynchronous I/O (aka AIO or libibmaio) library in the Java Message Service (JMS) component in IBM WebSphere Application Server (WAS) 6.1.x before 6.1.0.17 on AIX 5.3 allows attackers to cause a denial of service (daemon crash) via vectors related to the aiogetioev2 and getEvent methods.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-0435?
CVE-2009-0435 has a severity rating that indicates it can lead to a denial of service due to daemon crashes.
How do I fix CVE-2009-0435?
You can fix CVE-2009-0435 by updating to the IBM WebSphere Application Server version 6.1.0.17 or later.
Which versions of IBM WebSphere Application Server are affected by CVE-2009-0435?
The affected versions of IBM WebSphere Application Server for CVE-2009-0435 include all versions up to 6.1.0.16.
What causes the vulnerability in CVE-2009-0435?
CVE-2009-0435 is caused by unspecified issues in the IBM Asynchronous I/O library related to the aio_geti function.
Is CVE-2009-0435 specific to any operating system?
Yes, CVE-2009-0435 specifically impacts the AIX operating system version 5.3.