CVE-2019-4055: High severity ibm websphere mq light vulnerability
IBM MQ 8.0.0.0 through 8.0.0.10, 9.0.0.0 through 9.0.0.5, and 9.1.0.0 through 9.1.1 is vulnerable to a denial of service attack within the TLS key renegotiation function. IBM X-Force ID: 156564.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2019-4055?
CVE-2019-4055 has been rated as a high severity issue due to its potential for impacting system availability through denial of service attacks.
How do I fix CVE-2019-4055?
To mitigate CVE-2019-4055, it is recommended to update IBM MQ to a fixed version that addresses this vulnerability.
Which versions of IBM MQ are affected by CVE-2019-4055?
CVE-2019-4055 affects IBM MQ versions 8.0.0.0 through 8.0.0.10, 9.0.0.0 through 9.0.0.5, and 9.1.0.0 through 9.1.1.
Is there a workaround for CVE-2019-4055?
Currently, there are no specific workarounds provided for mitigating CVE-2019-4055 aside from upgrading to patched versions.
What is the nature of the vulnerability in CVE-2019-4055?
CVE-2019-4055 is a denial of service vulnerability that occurs during the TLS key renegotiation process.