Description
IBM WebSphere MQ 6.x through 6.0.2.7, 7.0.0.0, 7.0.0.1, 7.0.0.2, and 7.0.1.0, when read ahead or asynchronous message consumption is enabled, allows attackers to have an unspecified impact via unknown vectors, related to a "memory overwrite" issue.
References (5)
Core 5
Core References
Patch, Vendor Advisory vdb-entry
x_refsource_vupen
http://www.vupen.com/english/advisories/2009/2578
Patch, Vendor Advisory x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=swg24024153
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/36310
Various Sources vendor-advisory
x_refsource_aixapar
http://www-1.ibm.com/support/docview.wss?uid=swg1IZ56259
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/36647
Scores
EPSS
0.0155
EPSS Percentile
72.4%
Details
Status
published
Products (17)
ibm/websphere_mq
6
ibm/websphere_mq
6.0
ibm/websphere_mq
6.0.0.0
ibm/websphere_mq
6.0.1.0
ibm/websphere_mq
6.0.1.1
ibm/websphere_mq
6.0.2.0
ibm/websphere_mq
6.0.2.1
ibm/websphere_mq
6.0.2.2
ibm/websphere_mq
6.0.2.3
ibm/websphere_mq
6.0.2.4
... and 7 more
Published
Sep 10, 2009
Tracked Since
Feb 18, 2026