Known vulnerabilities in IBM MQ Operator - page 12
Vendor:
IBM Corporation
Software:
IBM MQ Operator
Software CPE:
cpe:2.3:a:ibm_corporation:ibm_mq_operator:*:*:*:*:*:*:*:*
Website:
https://www.ibm.com/us-en
Total vulnerabilities:
293
Public exploits:
19
Known exploited (KEV):
4
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
4.0.0
3.2.26 SC2
4.0.1 SC2
2.0.29
3.9.0
3.2.21 SC2
3.8.1 CD
3.7.2
3.2.19
9.4.4.0-r3
3.2.16
9.4.3.1-r2
3.6.3
9.4.2.1-r2
3.2.12
3.5.3
9.3.0.20-r1
9.4.0.0-r2
2.0.24
3.2.2
1.3.3
1.8.0
9.4.1.0-r1
2.0.28
3.2.6
3.3.0
2.0.27
3.2.5
3.2.4
2.0.26
9.3.0.20-r2
2.0.25
2.0.23
2.0.22
2.0.14
2.0.5
2.0.21
2.0.20
2.0.19
2.0.18
2.0.17
2.0.15
2.0.16
2.0.13
2.0.12
2.0.11
2.0.10
2.0.9
2.0.8
2.0.7
2.0.6
2.0.4
2.0.3
2.0.2
2.0.1
1.3.8
1.3.7
1.3.6
1.3.5
1.3.4
9.4.0.0-r3
3.2.3
3.2.0
3.1.3
3.1.2
3.1.1
3.1.0
2.2.0
2.4.6
2.4.7
3.0.1
3.0.0
2.4.5
2.4.3
2.4.4
2.4.2
2.4.1
2.4.0
2.3.3
2.3.2
2.3.1
2.3.0
2.2.2
2.2.1
2.1.0
2.0.0
1.8.2
Vulnerabilities (293)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU72432 - Heap-based Buffer Overflow CVE-2022-48303 |
CWE-122 | High | 2.0.9, 2.3.1 | 21.02.2023 |
SB2023022105 SB2023022111 SB2023022112 and 72 more |
||
| #VU72337 - Allocation of Resources Without Limits or Throttling CVE-2023-23916 |
CWE-770 | Medium | 2.0.10, 2.3.2 | 16.02.2023 |
SB2023021668 SB2023021670 SB2023021671 and 89 more |
||
| #VU72336 - Cleartext Transmission of Sensitive Information CVE-2023-23915 |
CWE-319 | Medium | 2.0.10, 2.3.2 | 16.02.2023 |
SB2023021668 SB2023021671 SB2023021672 and 26 more |
||
| #VU72335 - Cleartext Transmission of Sensitive Information CVE-2023-23914 |
CWE-319 | Medium | 2.0.10, 2.3.2 | 16.02.2023 |
SB2023021668 SB2023021671 SB2023021672 and 29 more |
||
| #VU72125 - Inadequate Encryption Strength CVE-2023-0361 |
CWE-326 | Medium | 2.0.10, 2.3.2 | 11.02.2023 |
SB2023021103 SB2023021109 SB2023021561 and 88 more |
||
| #VU71996 - Double Free CVE-2022-4450 |
CWE-415 | Medium | 2.0.10, 2.3.2 | 07.02.2023 |
SB2023020742 SB2023020748 SB2023020771 and 180 more |
||
| #VU71995 - Use After Free CVE-2023-0215 |
CWE-416 | Medium | 2.0.10, 2.3.2 | 07.02.2023 |
SB2023020742 SB2023020747 SB2023020748 and 209 more |
||
| #VU71993 - Information Exposure Through Timing Discrepancy CVE-2022-4304 |
CWE-208 | Medium | 2.0.10, 2.3.2 | 07.02.2023 |
SB2023020742 SB2023020748 SB2023020767 and 222 more |
||
| #VU71379 - Incorrect Regular Expression CVE-2022-40897 |
CWE-185 | Medium | 2.0.10, 2.3.2 | 20.01.2023 |
SB2023012008 SB2023012015 SB2023012016 and 99 more |
||
| #VU70474 - Integer overflow CVE-2022-47629 |
CWE-190 | High | 2.0.8, 2.3.0 | 22.12.2022 |
SB2022122202 SB2022122204 SB2022122205 and 98 more |
||
| #VU69807 - Off-by-one Error CVE-2022-3821 |
CWE-193 | Low | 2.0.7, 2.2.2 | 01.12.2022 |
SB2022120139 SB2022120141 SB2022120143 and 50 more |
||
| #VU69337 - Integer overflow CVE-2022-42898 |
CWE-190 | Medium | 2.0.6, 2.2.1 | 15.11.2022 |
SB2022111530 SB2022111610 SB2022111621 and 123 more |
||
| #VU68858 - Off-by-one Error CVE-2021-46848 |
CWE-193 | Medium | 2.0.7, 2.2.2 | 31.10.2022 |
SB2022103141 SB2022103142 SB2022103143 and 84 more |
||
| #VU68829 - Resource Management Errors CVE-2022-40304 |
CWE-399 | Medium | 2.0.7, 2.2.2 | 30.10.2022 |
SB2022103005 SB2022103006 SB2022103007 and 90 more |
||
| #VU68828 - Integer overflow CVE-2022-40303 |
CWE-190 | High | 2.0.7, 2.2.2 | 30.10.2022 |
SB2022103005 SB2022103006 SB2022103007 and 88 more |
||
| #VU68718 - Use After Free CVE-2022-43680 |
CWE-416 | Medium | 2.0.7, 2.2.2 | 25.10.2022 |
SB2022102560 SB2022102566 SB2022103010 and 99 more |
||
| #VU67414 - Improper Validation of Array Index CVE-2022-35737 |
CWE-129 | Medium | 2.0.8, 2.3.0 | 15.09.2022 |
SB2022091537 SB2022092034 SB2022092682 and 72 more |
||
| #VU64075 - Out-of-bounds write CVE-2022-1304 |
CWE-787 | Low | 2.0.6, 2.2.1 | 08.06.2022 |
SB2022060814 SB2022060815 SB2022060830 and 66 more |
||
| #VU60114 - Integer overflow CVE-2022-23990 |
CWE-190 | High | - | 28.01.2022 |
SB2022012504 SB2022012804 SB2022020902 and 46 more |
||
| #VU15952 - Out-of-bounds read CVE-2017-14166 |
CWE-125 | Low | 2.0.10, 2.3.2 | 19.11.2018 |
SB2017091705 SB2018111908 SB2018122801 and 7 more |
Showing elements 221 - 240 out of 293