First published: Wed Jun 28 2023(Updated: )
IBM MQ 9.0 LTS, 9.1 LTS, 9.2 LTS, 9.3 LTS, 9.2 CD, and 9.3 CD and IBM MQ Appliance 9.2 LTS, 9.3 LTS, 9.2 CD, and 9.2 LTS, under certain configurations, is vulnerable to a denial of service attack caused by an error processing messages. IBM X-Force ID: 250397.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM WebSphere MQ Light | <=9.0 LTS | |
IBM WebSphere MQ Light | <=9.1 LTS | |
IBM WebSphere MQ Light | <=9.2 LTS | |
IBM WebSphere MQ Light | <=9.3 LTS | |
IBM WebSphere MQ Light | <=9.2 CD | |
IBM WebSphere MQ Light | <=9.3 CD | |
IBM WebSphere MQ Light | =9.0.0.0 | |
IBM WebSphere MQ Light | =9.1.0.0 | |
IBM WebSphere MQ Light | =9.2.0 | |
IBM WebSphere MQ Light | =9.2.0 | |
IBM WebSphere MQ Light | =9.3.0 | |
IBM WebSphere MQ Light | =9.3.0 | |
HPE HP-UX | ||
IBM AIX | ||
IBM iSeries AS/400 | ||
IBM z/OS Linux | ||
Linux Kernel | ||
Microsoft Windows Operating System | ||
Oracle Solaris and Zettabyte File System (ZFS) | ||
IBM WebSphere MQ Appliance | =9.2.0.0 | |
IBM WebSphere MQ Appliance | =9.2.0.0 | |
IBM WebSphere MQ Appliance | =9.3.0.0 | |
IBM WebSphere MQ Appliance | =9.3.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-28513.
The severity of CVE-2023-28513 is high (7.5).
IBM MQ 9.0 LTS, 9.1 LTS, 9.2 LTS, 9.3 LTS, 9.2 CD, and 9.3 CD are affected by CVE-2023-28513.
Apply the necessary patches or updates provided by IBM to fix CVE-2023-28513.
You can find more information about CVE-2023-28513 on the IBM Support website and IBM X-Force Exchange.