CVE-2012-2199

IBM WebSphere MQ 7.0.1-7.0.1.8, 7.1, 7.5 - Denial of Service via Multiplexed Channel

Title source: llm
STIX 2.1

Description

The server message channel agent in the queue manager in the server in IBM WebSphere MQ 7.0.1 before 7.0.1.9, 7.1, and 7.5 on Solaris allows remote attackers to cause a denial of service (invalid address alignment exception and daemon crash) via vectors involving a multiplexed channel.

References (3)

Core 3
Core References
Various Sources vendor-advisory x_refsource_aixapar
http://www-01.ibm.com/support/docview.wss?uid=swg1IC82725
Vendor Advisory x_refsource_confirm
http://www.ibm.com/support/docview.wss?uid=swg21610285
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/76434

Scores

EPSS 0.0155
EPSS Percentile 72.5%

Details

CWE
CWE-399
Status published
Products (11)
ibm/websphere_mq 7.0.1.0
ibm/websphere_mq 7.0.1.1
ibm/websphere_mq 7.0.1.2
ibm/websphere_mq 7.0.1.3
ibm/websphere_mq 7.0.1.4
ibm/websphere_mq 7.0.1.5
ibm/websphere_mq 7.0.1.6
ibm/websphere_mq 7.0.1.7
ibm/websphere_mq 7.0.1.8
ibm/websphere_mq 7.1
... and 1 more
Published Sep 25, 2012
Tracked Since Feb 18, 2026