IBM WebSphere mq fdc handles DoS Vulnerabilities
Release date:
Updated on:
Affected Systems:
IBM WebSphere message 7.0
Unaffected system:
IBM WebSphere MQ 7.0.1.5
Description:
--------------------------------------------------------------------------------
Bugtraq id: 44913
Cve id: CVE-2010-2638
IBM WebSphere MQ is used to provide message transmission services in enterprises.
WebSphere MQ may have loops when processing FDC with probe RM680004. By forcibly creating such FDC, local or remote attackers can exhaust all disk resources.
<* Source: IBM (ncsupp@ca.ibm.com)
Link: http://secunia.com/advisories/42253/
Http://xforce.iss.net/xforce/xfdb/63147
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
IBM
---
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www-01.ibm.com/support/docview.wss? Rs = 171 & uid = swg21254675