Home
HIGH: 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HDefault status
unaffected
9.1
affected
9.2
affected
9.3
affected
9.4
affected
Default status
unaffected
9.3
affected
9.4
affected
Description
IBM MQ 9.1, 9.2, 9.3, 9.4 LTS and 9.3, 9.4 CD is vulnerable to a denial of service, caused by improper enforcement of the timeout on individual read operations. By conducting slowloris-type attacks, a remote attacker could exploit this vulnerability to cause a denial of service.
Problem types
CWE-772 Missing Release of Resource after Effective Lifetime
Product status
9.1
9.2
9.3
9.4
9.3
9.4
References
www.ibm.com/support/pages/node/7244480