First published: Fri Nov 11 2022(Updated: )
IBM MQ 8.0, 9.0 LTS, 9.1 CD, 9.1 LTS, 9.2 CD, and 9.2 LTS could allow an authenticated and authorized user to cause a denial of service to the MQTT channels. IBM X-Force ID: 228335.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM MQ | =8.0.0.0 | |
IBM MQ | =9.0.0.0 | |
IBM MQ | =9.1.0 | |
IBM MQ | =9.1.0.0 | |
IBM MQ | =9.2.0 | |
IBM MQ | =9.2.0 | |
HP HP-UX | ||
IBM AIX | ||
IBM i | ||
Ibm Linux On Ibm Z | ||
Linux Linux kernel | ||
Microsoft Windows | ||
Oracle Solaris | ||
IBM MQ | <=9.1 LTS | |
IBM MQ | <=9.0 LTS | |
IBM MQ | <=8.0 | |
IBM MQ | <=9.2 CD | |
IBM MQ | <=9.1 CD | |
IBM MQ | <=9.2 LTS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-31772.
The severity rating of CVE-2022-31772 is medium (6.5).
IBM MQ 8.0, 9.0 LTS, 9.1 CD, 9.1 LTS, 9.2 CD, and 9.2 LTS are affected by CVE-2022-31772.
An authenticated and authorized user can exploit CVE-2022-31772 to cause a denial of service to the MQTT channels.
Yes, there is a patch available to fix CVE-2022-31772. Please refer to the IBM support page for more information.