Boletines de Vulnerabilidades

IBM Security Bulletin: IBM WebSphere MQ Internet Pass-Thru - Potential denial of service on the command port listener (CVE-2013-5401)


Información sobre el sistema

   
Software afectado IBM

Descripción

A denial of service vulnerability exists and could be exploited by a remotely connected user to stop the remote administration service. CVE(s): CVE-2013-5401 Affected product(s) and affected version(s): WebSphere MQIPT 2.1.0.0 WebSphere MQIPT 2.0.x Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=swg21666863 X-Force Database: http://xforce.iss.net/xforce/xfdb/87297

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_websphere_mq_internet_pass_thru_potential_denial_of_service_on_the_command_port_listener_cve_2013_5401?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2013-5401 ,CVE-2014-0411 ,CVE-2014-0829 ,CVE-2013-6450 ,CVE-2013-6449 and CVE-2013-4353.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-03-22

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT