CVE-2019-4046: High severity IBM WebSphere Application Server Feature Pack for Web Services vulnerability
Published Mar 25, 2019
·Updated
IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to a denial of service, caused by improper handling of request headers. A remote attacker could exploit this vulnerability to cause the consumption of Memory. IBM X-Force ID: 156242.
Affected Software
5 affected components
IBM WebSphere Application Server Feature Pack for Web Services<19.0.0.4
IBM WebSphere Application Server Feature Pack for Web Services>=7.0.0.0<=7.0.0.45
IBM WebSphere Application Server Feature Pack for Web Services>=8.0.0.0<=8.0.0.15
IBM WebSphere Application Server Feature Pack for Web Services>=8.5.0.0<=8.5.5.15
IBM WebSphere Application Server Feature Pack for Web Services>=9.0.0.0<=9.0.0.10
Remediation
Patch Available
Event History
Mar 25, 2019
CVE Published
via MITRE·06:15 PM
Data Sourced
via MITRE·06:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-4046?
CVE-2019-4046 has a severity rating of medium due to its potential to cause denial of service.
2
How do I fix CVE-2019-4046?
To fix CVE-2019-4046, you should apply the latest security updates for IBM WebSphere Application Server.
3
What systems are affected by CVE-2019-4046?
CVE-2019-4046 affects IBM WebSphere Application Server versions 7.0, 8.0, 8.5, and 9.0.
4
What type of vulnerability is CVE-2019-4046?
CVE-2019-4046 is a denial of service vulnerability caused by improper handling of request headers.
5
Who can exploit CVE-2019-4046?
CVE-2019-4046 can be exploited by a remote attacker to consume memory on the affected systems.