CVE-2017-1236: Input Validation
Published Jul 6, 2017
·Updated
IBM WebSphere MQ 9.0.2 could allow an authenticated user to potentially cause a denial of service by saving an incorrect channel status inquiry. IBM X-Force ID: 124354
Affected Software
1 affected component
IBM WebSphere MQ=9.0.2
Event History
Jul 6, 2017
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-1236?
The severity of CVE-2017-1236 is classified as a denial of service vulnerability affecting IBM WebSphere MQ 9.0.2.
2
How do I fix CVE-2017-1236?
To fix CVE-2017-1236, upgrade IBM WebSphere MQ to a newer version that addresses this vulnerability.
3
Who is affected by CVE-2017-1236?
CVE-2017-1236 affects authenticated users of IBM WebSphere MQ version 9.0.2.
4
What could an attacker exploit in CVE-2017-1236?
An attacker could exploit CVE-2017-1236 by saving an incorrect channel status inquiry, leading to a potential denial of service.
5
Is CVE-2017-1236 a code execution vulnerability?
No, CVE-2017-1236 is not a code execution vulnerability; it allows for a denial of service due to incorrect channel status inquiries.