cbcvebase.
CVE-2024-51470
published 2024-12-18

CVE-2024-51470: IBM MQ 9.1 LTS, 9.2 LTS, 9.3 LTS, 9.3 CD, 9.4 LTS, 9.4 CD, IBM MQ Appliance 9.3 LTS, 9.3 CD, 9.4 LTS, and IBM MQ for HPE NonStop 8.1.0 through 8.1.0.25 could…

medium6.5CVSS 3.1
AVNACLPRLUINSUCNINAH
IBM MQ 9.1 LTS, 9.2 LTS, 9.3 LTS, 9.3 CD, 9.4 LTS, 9.4 CD, IBM MQ Appliance 9.3 LTS, 9.3 CD, 9.4 LTS, and IBM MQ for HPE NonStop 8.1.0 through 8.1.0.25 could allow an authenticated user to cause a denial-of-service due to messages with improperly set values.

Affected

8 ranges
VendorProductVersion rangeFixed in
ibmmq
ibmmq_appliance
ibmmq_appliance>= 9.1.0.0 < 9.1.0.269.1.0.26
ibmmq_appliance>= 9.2.0.0 < 9.2.0.309.2.0.30
ibmmq_appliance>= 9.3.0.0 < 9.3.0.269.3.0.26
ibmmq_appliance>= 9.4.0.0 < 9.4.0.79.4.0.7
ibmmq_for_hpe_nonstop>= 8.1.0 < 8.1.0.268.1.0.26
ibmmq_for_hpe_nonstop8.1.0 – 8.1.0.25