CVE-2017-1117: Medium severity ibm websphere mq appliance vulnerability
Published Jun 21, 2017
·Updated
IBM WebSphere MQ 8.0 and 9.0 could allow an authenticated user to cause a denial of service to the MQXR channel when trace is enabled. IBM X-Force ID: 121155.
Affected Software
9 affected components
IBM WebSphere MQ=8.0
IBM WebSphere MQ=8.0.0.0
IBM WebSphere MQ=8.0.0.1
IBM WebSphere MQ=8.0.0.2
IBM WebSphere MQ=8.0.0.3
IBM WebSphere MQ=8.0.0.4
IBM WebSphere MQ=8.0.0.5
IBM WebSphere MQ=9.0.0.0
IBM WebSphere MQ=9.0.1
Remediation
Patch Available
Event History
Jun 21, 2017
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-1117?
CVE-2017-1117 has a high severity rating due to its potential to cause a denial of service.
2
How do I fix CVE-2017-1117?
To fix CVE-2017-1117, ensure that you update IBM WebSphere MQ to the latest version that addresses this vulnerability.
3
What systems are affected by CVE-2017-1117?
CVE-2017-1117 affects IBM WebSphere MQ versions 8.0 and 9.0.
4
Can an unauthenticated user exploit CVE-2017-1117?
No, CVE-2017-1117 requires an authenticated user to exploit the vulnerability.
5
What impact does CVE-2017-1117 have on IBM WebSphere MQ?
CVE-2017-1117 can lead to a denial of service for the MQXR channel when tracing is enabled.