First published: Wed Feb 01 2023(Updated: )
IBM MQ 8.0.0, 9.0.0, 9.1.0, 9.2.0, 9.3.0 Managed File Transfer could allow a local user to obtain sensitive information from diagnostic files. IBM X-Force ID: 238206.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM MQ | =8.0.0.0 | |
IBM MQ | =9.0.0.0 | |
IBM MQ | =9.1.0 | |
IBM MQ | =9.1.0.0 | |
IBM MQ | =9.2.0 | |
IBM MQ | =9.2.0 | |
IBM MQ | =9.3.0 | |
IBM MQ | =9.3.0 | |
IBM AIX | ||
IBM i | ||
Ibm Linux On Ibm Z | ||
Linux Linux kernel | ||
Microsoft Windows | ||
Oracle Solaris | ||
<=8.0 | ||
<=9.0 LTS | ||
<=9.1 CD | ||
<=9.1 LTS | ||
<=9.2 CD | ||
<=9.2 LTS | ||
<=9.3 CD | ||
<=9.3 LTS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2022-42436.
The title of this vulnerability is 'IBM MQ Managed File Transfer could allow a local user to obtain sensitive information from diagnostic files.'
The severity of CVE-2022-42436 is medium.
IBM MQ versions 8.0.0, 9.0.0, 9.1.0, 9.2.0, and 9.3.0 are affected by this vulnerability.
A local user can obtain sensitive information from diagnostic files in IBM MQ Managed File Transfer due to a vulnerability.