CVE-2014-0911: Medium severity IBM WebSphere MQ vulnerability
Published May 7, 2014
·Updated
inetd in IBM WebSphere MQ 7.1.x before 7.1.0.5 and 7.5.x before 7.5.0.4 allows remote attackers to cause a denial of service (disk or CPU consumption) via unspecified vectors.
Affected Software
9 affected components
IBM WebSphere MQ=7.1
IBM WebSphere MQ=7.1.0.1
IBM WebSphere MQ=7.1.0.2
IBM WebSphere MQ=7.1.0.3
IBM WebSphere MQ=7.1.0.4
IBM WebSphere MQ=7.5
IBM WebSphere MQ=7.5.0.1
IBM WebSphere MQ=7.5.0.2
IBM WebSphere MQ=7.5.0.3
Event History
May 7, 2014
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Data Sourced
via NVD·10:55 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2014-0911?
CVE-2014-0911 has been classified as a denial of service vulnerability, impacting system availability.
2
How do I fix CVE-2014-0911?
To mitigate CVE-2014-0911, upgrade to IBM WebSphere MQ version 7.1.0.5 or 7.5.0.4 or later.
3
What types of systems are affected by CVE-2014-0911?
CVE-2014-0911 affects IBM WebSphere MQ versions 7.1.x before 7.1.0.5 and 7.5.x before 7.5.0.4.
4
What are the consequences of CVE-2014-0911 being exploited?
Exploitation of CVE-2014-0911 can lead to increased disk or CPU consumption, resulting in service disruption.
5
Who can exploit CVE-2014-0911?
CVE-2014-0911 can be exploited by remote attackers with access to the affected IBM WebSphere MQ systems.