CVE-2024-25015

IBM MQ 9.2 LTS, 9.3 LTS, and 9.3 CD Internet Pass-Thru could allow a remote user to cause a denial of service by sending HTTP requests that would consume all available resources. IBM X-Force ID: 281278.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:ibm:mq:*:*:*:*:lts:*:*:*
cpe:2.3:a:ibm:mq:*:*:*:*:continuous_delivery:*:*:*
cpe:2.3:a:ibm:mq:*:*:*:*:lts:*:*:*
OR cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
cpe:2.3:o:ibm:linux_on_ibm_z:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

21 Aug 2025, 15:15

Type Values Removed Values Added
CPE cpe:2.3:o:ibm:linux_on_ibm_z:-:*:*:*:*:*:*:*
cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:*:*:*:*:lts:*:*:*
cpe:2.3:a:ibm:mq:*:*:*:*:continuous_delivery:*:*:*
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/281278 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/281278 - Vendor Advisory
References () https://www.ibm.com/support/pages/node/7149583 - () https://www.ibm.com/support/pages/node/7149583 - Vendor Advisory
First Time Microsoft
Ibm mq
Microsoft windows
Ibm
Linux linux Kernel
Linux
Ibm aix
Ibm linux On Ibm Z

21 Nov 2024, 09:00

Type Values Removed Values Added
Summary
  • (es) IBM MQ 9.2 LTS, 9.3 LTS y 9.3 CD Internet Pass-Thru podría permitir que un usuario remoto provoque una denegación de servicio enviando solicitudes HTTP que consumirían todos los recursos disponibles. ID de IBM X-Force: 281278.
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/281278 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/281278 -
References () https://www.ibm.com/support/pages/node/7149583 - () https://www.ibm.com/support/pages/node/7149583 -

01 May 2024, 19:50

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-01 17:15

Updated : 2025-08-21 15:15


NVD link : CVE-2024-25015

Mitre link : CVE-2024-25015

CVE.ORG link : CVE-2024-25015


JSON object : View

Products Affected

microsoft

  • windows

ibm

  • mq
  • linux_on_ibm_z
  • aix

linux

  • linux_kernel
CWE
CWE-406

Insufficient Control of Network Message Volume (Network Amplification)