CVE-2009-3160

IBM WebSphere MQ <7.0.1.0 - Memory Corruption

Title source: llm
STIX 2.1

Description

IBM WebSphere MQ 6.x through 6.0.2.7, 7.0.0.0, 7.0.0.1, 7.0.0.2, and 7.0.1.0, when read ahead or asynchronous message consumption is enabled, allows attackers to have an unspecified impact via unknown vectors, related to a "memory overwrite" issue.

References (5)

Core 5
Core References
Patch, Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2009/2578
Patch, Vendor Advisory x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=swg24024153
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/36310
Various Sources vendor-advisory x_refsource_aixapar
http://www-1.ibm.com/support/docview.wss?uid=swg1IZ56259
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/36647

Scores

EPSS 0.0155
EPSS Percentile 72.4%

Details

Status published
Products (17)
ibm/websphere_mq 6
ibm/websphere_mq 6.0
ibm/websphere_mq 6.0.0.0
ibm/websphere_mq 6.0.1.0
ibm/websphere_mq 6.0.1.1
ibm/websphere_mq 6.0.2.0
ibm/websphere_mq 6.0.2.1
ibm/websphere_mq 6.0.2.2
ibm/websphere_mq 6.0.2.3
ibm/websphere_mq 6.0.2.4
... and 7 more
Published Sep 10, 2009
Tracked Since Feb 18, 2026