CVE-2007-1944Improper Restriction of Operations within the Bounds of a Memory Buffer in IBM Websphere Application Server

Severity
5.0MEDIUMNVD
EPSS
0.5%
top 32.24%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 11
Latest updateMay 1

Description

The Java Message Service (JMS) in IBM WebSphere Application Server (WAS) before 6.1.0.7 allows attackers to cause a denial of service via unknown vectors involving the "double release [of] a bytebuffer input stream," possibly a double free vulnerability.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-xr9q-qqh9-m7h3: The Java Message Service (JMS) in IBM WebSphere Application Server (WAS) before 62022-05-01
CVEList
CVE-2007-1944: The Java Message Service (JMS) in IBM WebSphere Application Server (WAS) before 62007-04-11
CVE-2007-1944 — IBM vulnerability | cvebase