CVE-2017-1235: Medium severity ibm websphere mq appliance vulnerability
Published Sep 25, 2017
·Updated
IBM WebSphere MQ 8.0 could allow an authenticated user to cause a premature termination of a client application thread which could potentially cause denial of service. IBM X-Force ID: 123914.
Affected Software
7 affected components
IBM WebSphere MQ=8.0.0.0
IBM WebSphere MQ=8.0.0.1
IBM WebSphere MQ=8.0.0.2
IBM WebSphere MQ=8.0.0.3
IBM WebSphere MQ=8.0.0.4
IBM WebSphere MQ=8.0.0.5
IBM WebSphere MQ=8.0.0.6
Remediation
Patch Available
Event History
Sep 25, 2017
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-1235?
CVE-2017-1235 is considered a medium severity vulnerability that can lead to denial of service.
2
How do I fix CVE-2017-1235?
To fix CVE-2017-1235, you should upgrade to a patched version of IBM WebSphere MQ.
3
Which versions of IBM WebSphere MQ are affected by CVE-2017-1235?
CVE-2017-1235 affects IBM WebSphere MQ versions 8.0.0.0 through 8.0.0.6.
4
Can CVE-2017-1235 be exploited by unauthenticated users?
No, CVE-2017-1235 can only be exploited by authenticated users.
5
What potential impact does CVE-2017-1235 have on my application?
Exploitation of CVE-2017-1235 could result in a premature termination of client application threads, causing denial of service.