CVE-2012-2199: Medium severity ibm websphere mq vulnerability
The server message channel agent in the queue manager in the server in IBM WebSphere MQ 7.0.1 before 7.0.1.9, 7.1, and 7.5 on Solaris allows remote attackers to cause a denial of service (invalid address alignment exception and daemon crash) via vectors involving a multiplexed channel.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-2199?
CVE-2012-2199 is classified as a denial of service vulnerability that may result in a daemon crash.
How do I fix CVE-2012-2199?
To remediate CVE-2012-2199, upgrade IBM WebSphere MQ to version 7.0.1.9 or later, or to version 7.1 or 7.5.
Which versions of IBM WebSphere MQ are affected by CVE-2012-2199?
CVE-2012-2199 affects IBM WebSphere MQ versions 7.0.1.0 to 7.0.1.8, as well as versions 7.1 and 7.5.
Can CVE-2012-2199 be exploited remotely?
Yes, CVE-2012-2199 can be exploited remotely, allowing attackers to cause a denial of service.
What impact does CVE-2012-2199 have on users?
Exploitation of CVE-2012-2199 may lead to service interruptions due to the crash of the server message channel agent.