CVE-2016-8915: Medium severity IBM WebSphere MQ vulnerability
Published Feb 22, 2017
·Updated
IBM WebSphere MQ 8.0 could allow an authenticated user with access to the queue manager and queue, to deny service to other channels running under the same process. IBM Reference #: 1998649.
Affected Software
7 affected components
IBM WebSphere MQ=8.0
IBM WebSphere MQ=8.0.0.0
IBM WebSphere MQ=8.0.0.1
IBM WebSphere MQ=8.0.0.2
IBM WebSphere MQ=8.0.0.3
IBM WebSphere MQ=8.0.0.4
IBM WebSphere MQ=8.0.0.5
Remediation
Patch Available
Event History
Feb 22, 2017
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
DescriptionWeakness
Data Sourced
via NVD·07:59 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2016-8915?
CVE-2016-8915 is classified as a denial of service vulnerability affecting IBM WebSphere MQ 8.0.
2
How do I fix CVE-2016-8915?
To fix CVE-2016-8915, apply the latest IBM WebSphere MQ patches and updates provided by IBM.
3
Who is affected by CVE-2016-8915?
CVE-2016-8915 affects authenticated users who have access to specific queue managers and queues in IBM WebSphere MQ 8.0.
4
What is the impact of CVE-2016-8915?
CVE-2016-8915 allows an authenticated user to deny service to other channels running under the same process.
5
What versions of IBM WebSphere MQ are impacted by CVE-2016-8915?
CVE-2016-8915 specifically impacts IBM WebSphere MQ versions 8.0, 8.0.0.0, 8.0.0.1, 8.0.0.2, 8.0.0.3, 8.0.0.4, and 8.0.0.5.