First published: Tue Oct 31 2023(Updated: )
IBM MQ 9.0 LTS, 9.1 LTS, 9.2 LTS, 9.3 LTS and 9.3 CD is vulnerable to a denial-of-service attack due to an error within the MQ clustering logic. IBM X-Force ID: 268066.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM MQ | <=9.0 LTS | |
IBM MQ | <=9.1 LTS | |
IBM MQ | <=9.2 LTS | |
IBM MQ | <=9.3 LTS | |
IBM MQ | <=9.3 CD |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-45177 is classified as a denial-of-service vulnerability.
CVE-2023-45177 affects IBM MQ versions 9.0 LTS, 9.1 LTS, 9.2 LTS, 9.3 LTS, and 9.3 CD.
To address CVE-2023-45177, you should update IBM MQ to the latest patched version provided by IBM.
CVE-2023-45177 enables a denial-of-service attack due to an error in the MQ clustering logic.
If your IBM MQ system is vulnerable to CVE-2023-45177, it is recommended to apply the relevant security patches immediately.