CVE-2023-28513: IBM MQ denial of service
Published Jun 28, 2023
·Updated
IBM MQ 9.0 LTS, 9.1 LTS, 9.2 LTS, 9.3 LTS, 9.2 CD, and 9.3 CD and IBM MQ Appliance 9.2 LTS, 9.3 LTS, 9.2 CD, and 9.2 LTS, under certain configurations, is vulnerable to a denial of service attack caused by an error processing messages. IBM X-Force ID: 250397.
Other sources
IBM MQ, under certain configurations, is vulnerable to a denial of service attack caused by an error processing messages.
Affected Software
23 affected components
IBM MQ<=9.0 LTS
IBM MQ<=9.1 LTS
IBM MQ<=9.2 LTS
IBM MQ<=9.3 LTS
IBM MQ<=9.2 CD
IBM MQ<=9.3 CD
IBM MQ=9.0.0.0
IBM MQ=9.1.0.0
IBM MQ=9.2.0
IBM MQ=9.2.0
IBM MQ=9.3.0
IBM MQ=9.3.0
HP HP-UX
IBM AIX
IBM i
IBM Linux On Ibm Z
Linux Linux kernel
Microsoft Windows
Oracle Solaris
IBM MQ Appliance=9.2.0.0
IBM MQ Appliance=9.2.0.0
IBM MQ Appliance=9.3.0.0
IBM MQ Appliance=9.3.0.0
Remediation
Patch Available
Patch Available
Event History
Jun 28, 2023
CVE Published
via IBM·12:00 AM
Jul 19, 2023
CVE Published
via MITRE·01:49 AM
Data Sourced
via MITRE·01:49 AM
DescriptionSeverityWeakness
Data Sourced
02:15 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2023-28513.
2
What is the severity of CVE-2023-28513?
The severity of CVE-2023-28513 is high (7.5).
3
Which IBM MQ versions are affected by CVE-2023-28513?
IBM MQ 9.0 LTS, 9.1 LTS, 9.2 LTS, 9.3 LTS, 9.2 CD, and 9.3 CD are affected by CVE-2023-28513.
4
How can I fix CVE-2023-28513?
Apply the necessary patches or updates provided by IBM to fix CVE-2023-28513.
5
Where can I find more information about CVE-2023-28513?
You can find more information about CVE-2023-28513 on the IBM Support website and IBM X-Force Exchange.