CVE-2015-1987: High severity ibm websphere mq light vulnerability
Published Aug 3, 2015
·Updated
IBM MQ Light before 1.0.0.2 allows remote attackers to cause a denial of service (disk consumption) via a crafted byte sequence in authentication data, a different vulnerability than CVE-2015-1956 and CVE-2015-1958.
Affected Software
2 affected components
IBM WebSphere MQ Light=1.0
IBM WebSphere MQ Light=1.0.0.1
Event History
Aug 3, 2015
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-1987?
CVE-2015-1987 has a severity rating that indicates a denial of service vulnerability could be exploited through disk consumption.
2
What versions of IBM MQ Light are affected by CVE-2015-1987?
CVE-2015-1987 affects IBM WebSphere MQ Light versions 1.0 and 1.0.0.1.
3
How do I fix CVE-2015-1987?
To fix CVE-2015-1987, upgrade to the patched version of IBM WebSphere MQ Light, specifically versions after 1.0.0.2.
4
What types of attacks can leverage CVE-2015-1987?
CVE-2015-1987 can be leveraged by remote attackers through crafted byte sequences in authentication data.
5
Does CVE-2015-1987 relate to any other known vulnerabilities?
CVE-2015-1987 is distinct from other vulnerabilities such as CVE-2015-1956 and CVE-2015-1958.