CVE-2016-3013: Medium severity IBM WebSphere MQ vulnerability
Published Feb 22, 2017
·Updated
IBM WebSphere MQ 8.0 could allow an authenticated user to crash the MQ channel due to improper data conversion handling. IBM Reference #: 1998661.
Affected Software
1 affected component
IBM WebSphere MQ<=8.0.0.5
Remediation
Patch Available
Event History
Feb 22, 2017
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
DescriptionWeakness
Data Sourced
via NVD·07:59 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2016-3013?
CVE-2016-3013 has moderate severity due to the potential for an authenticated user to crash the MQ channel.
2
How do I fix CVE-2016-3013?
To fix CVE-2016-3013, update to a version of IBM WebSphere MQ that is higher than 8.0.0.5.
3
Who is affected by CVE-2016-3013?
CVE-2016-3013 affects users of IBM WebSphere MQ version 8.0.0.5 and earlier.
4
What type of attack can exploit CVE-2016-3013?
CVE-2016-3013 can be exploited by an authenticated user through improper data conversion handling.
5
What components of IBM WebSphere MQ are impacted by CVE-2016-3013?
The MQ channel component of IBM WebSphere MQ is impacted by CVE-2016-3013.