CVE-2024-22332: IBM Integration Bus for z/OS denial of service
Published Feb 9, 2024
·Updated
The IBM Integration Bus for z/OS 10.1 through 10.1.0.2 AdminAPI is vulnerable to a denial of service due to file system exhaustion. IBM X-Force ID: 279972.
Affected Software
1 affected component
IBM Integration Bus>=10.1<=10.1.0.2
Event History
Feb 9, 2024
CVE Published
via MITRE·12:54 AM
Data Sourced
via MITRE·12:54 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·01:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-22332?
CVE-2024-22332 has a high severity rating due to its potential to cause denial of service and file system exhaustion.
2
Which versions of IBM Integration Bus are affected by CVE-2024-22332?
CVE-2024-22332 affects IBM Integration Bus for z/OS versions 10.1 to 10.1.0.2.
3
How do I fix CVE-2024-22332?
To fix CVE-2024-22332, you should upgrade to a version of IBM Integration Bus that is not vulnerable, as detailed in IBM's security notifications.
4
What type of vulnerability is CVE-2024-22332?
CVE-2024-22332 is a denial of service vulnerability that can lead to file system exhaustion.
5
What are the potential impacts of CVE-2024-22332?
The potential impacts of CVE-2024-22332 include system downtime and inability to service user requests due to file system exhaustion.