First published: Wed Feb 25 2009(Updated: )
The CICS listener in IBM TXSeries for Multiplatforms 6.2 GA waits for a forcepurge acknowledgement from the CICS Application Server (CICSAS) after an eci response timeout, which might allow remote authenticated users to cause a denial of service (forcepurge handling delay), or have unspecified other impact, via vectors involving slow or nonexistent acknowledgement.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM TXSeries for Multiplatforms | =6.2 | |
IBM TXSeries for Multiplatforms | =6.2 | |
IBM TXSeries for Multiplatforms | =6.2 | |
IBM TXSeries for Multiplatforms | =6.2 | |
IBM TXSeries for Multiplatforms | =6.2 | |
IBM TXSeries for Multiplatforms | =6.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2009-0505 is considered moderate due to its potential to cause denial of service.
To fix CVE-2009-0505, apply the recommended patches provided by IBM for TXSeries 6.2.
CVE-2009-0505 affects users of IBM TXSeries for Multiplatforms version 6.2 on all supported operating systems.
CVE-2009-0505 may allow remote authenticated users to execute denial of service attacks by exploiting forcepurge handling delays.
CVE-2009-0505 is not classified as a zero-day vulnerability, as it was publicly disclosed and addressed in 2009.