CVE-2022-22325: Medium severity IBM MQ for HPE NonStop vulnerability
Published May 12, 2022
·Updated
IBM MQ (IBM MQ for HPE NonStop 8.1.0) can inadvertently disclose sensitive information under certain circumstances to a local user from a stack trace. IBM X-Force ID: 218853.
Other sources
IBM MQ can inadvertently disclose sensitive information under certain circumstances to a local user from a stack trace.
Affected Software
2 affected components
IBM MQ for HPE NonStop<=8.1.0
IBM MQ for HPE NonStop=8.1.0
Remediation
Patch Available
Event History
May 12, 2022
CVE Published
via IBM·12:00 AM
May 13, 2022
CVE Published
via MITRE·04:15 PM
Data Sourced
via MITRE·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2022-22325.
2
What is the title of the vulnerability?
The title of the vulnerability is 'IBM MQ can inadvertently disclose sensitive information under certain circumstances to a local user.'
3
What is the severity of CVE-2022-22325?
The severity of CVE-2022-22325 is medium with a severity value of 5.5.
4
Which software versions are affected by CVE-2022-22325?
IBM MQ for HPE NonStop version 8.1.0 is affected by CVE-2022-22325.
5
How can the vulnerability be fixed?
To fix CVE-2022-22325, users should apply the necessary patches or updates provided by IBM.