Vulnerability Solutions

The Nimsoft Cloud Monitor Periodic Vulnerability Scan checks for the vulnerability below. To see the most recently added vulnerability solutions that are scanned by WatchMouse, go to the Vulnerability Solutions overview

Category: Windows Risk factor: Critical Added: 28 Jan 2012
Synopsis:

The remote Windows host has a service installed that is affected by a buffer overflow vulnerability.

Description:

The version of IBM WebSphere MQ server running on the remote Windows host is earlier than 6.0.2.7 / 7.0.1.0. As such, it reportedly is affected by a buffer overflow vulnerability in the queue manager. This vulnerability could allow a remote, unauthenticated attacker to submit a specially crafted request that can execute arbitrary code in the context of the application.

See also:

http://www-01.ibm.com/support/docview.wss?uid=swg21386826

Solution:

Upgrade to WebSphere MQ 6.0.2.7 / 7.0.1.0 or later.

Risk factor:

Critical / CVSS Base Score : 10.0
(CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C)