CVE-2022-40237: IBM MQ for HPE NonStop denial of service
IBM MQ for HPE NonStop 8.1.0 is vulnerable to a denial of service attack due to an error within the CCDT and channel synchronization logic. IBM X-Force ID: 235727.
Other sources
IBM MQ is vulnerable to a denial of service attack due to an error within the CCDT and channel synconization logic.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for IBM MQ?
The vulnerability ID for IBM MQ is CVE-2022-40237.
What is the severity of CVE-2022-40237?
The severity of CVE-2022-40237 is high with a severity value of 7.5.
What is the affected software for CVE-2022-40237?
The affected software for CVE-2022-40237 is IBM MQ for HPE NonStop 8.1.0.
How does CVE-2022-40237 impact IBM MQ for HPE NonStop?
CVE-2022-40237 allows attackers to perform a denial of service attack on IBM MQ for HPE NonStop due to an error within the CCDT and channel synchronization logic.
Is there a fix for CVE-2022-40237?
Yes, IBM has provided a fix for CVE-2022-40237. It is recommended to apply the latest updates to IBM MQ for HPE NonStop to mitigate the vulnerability.