CVE-2015-4943: Medium severity ibm websphere mq light vulnerability
Published Jan 1, 2016
·Updated
IBM WebSphere MQ Light 1.x before 1.0.2 allows remote attackers to cause a denial of service (MQXR service crash) via a series of connect and disconnect actions, a different vulnerability than CVE-2015-4942.
Affected Software
2 affected components
IBM WebSphere MQ Light=1.0
IBM WebSphere MQ Light=1.0.0.1
Event History
Jan 1, 2016
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-4943?
The severity of CVE-2015-4943 is classified as a denial of service vulnerability.
2
How do I fix CVE-2015-4943?
To fix CVE-2015-4943, upgrade to IBM WebSphere MQ Light version 1.0.2 or later.
3
Who is affected by CVE-2015-4943?
CVE-2015-4943 affects IBM WebSphere MQ Light versions 1.0 and 1.0.0.1.
4
What type of attack vectors are associated with CVE-2015-4943?
CVE-2015-4943 can be exploited via remote attackers performing a series of connect and disconnect actions.
5
What risks are posed by CVE-2015-4943?
CVE-2015-4943 can lead to the MQXR service crashing, resulting in service disruption.