First published: Thu Dec 07 2017(Updated: )
IBM WebSphere MQ 8.0 and 9.0 could allow, under special circumstances, an unauthorized user to access an object which they should have been denied access. IBM X-Force ID: 126456.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM WebSphere MQ | =8.0.0.1 | |
IBM WebSphere MQ | =8.0.0.2 | |
IBM WebSphere MQ | =8.0.0.3 | |
IBM WebSphere MQ | =8.0.0.4 | |
IBM WebSphere MQ | =8.0.0.5 | |
IBM WebSphere MQ | =8.0.0.6 | |
IBM WebSphere MQ | =8.0.0.7 | |
IBM WebSphere MQ | =9.0 | |
IBM WebSphere MQ | =9.0.0.1 | |
IBM WebSphere MQ | =9.0.1 | |
IBM WebSphere MQ | =9.0.2 | |
IBM WebSphere MQ | =9.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2017-1341.
CVE-2017-1341 has a severity rating of 3.7, which is considered medium.
IBM WebSphere MQ versions 8.0.0.1 to 8.0.0.7 and versions 9.0.0.1 to 9.0.3 are affected by CVE-2017-1341.
Under special circumstances, an unauthorized user could access an object that they should have been denied access to.
Upgrade to a fixed version of IBM WebSphere MQ or apply the necessary patches or updates provided by IBM.