Known vulnerabilities in IBM MQ Operator - page 6
Vendor:
IBM Corporation
Software:
IBM MQ Operator
Software CPE:
cpe:2.3:a:ibm_corporation:ibm_mq_operator:*:*:*:*:*:*:*:*
Website:
https://www.ibm.com/us-en
Total vulnerabilities:
293
Public exploits:
19
Known exploited (KEV):
4
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
4.0.0
3.2.26 SC2
4.0.1 SC2
2.0.29
3.9.0
3.2.21 SC2
3.8.1 CD
3.7.2
3.2.19
9.4.4.0-r3
3.2.16
9.4.3.1-r2
3.6.3
9.4.2.1-r2
3.2.12
3.5.3
9.3.0.20-r1
9.4.0.0-r2
2.0.24
3.2.2
1.3.3
1.8.0
9.4.1.0-r1
2.0.28
3.2.6
3.3.0
2.0.27
3.2.5
3.2.4
2.0.26
9.3.0.20-r2
2.0.25
2.0.23
2.0.22
2.0.14
2.0.5
2.0.21
2.0.20
2.0.19
2.0.18
2.0.17
2.0.15
2.0.16
2.0.13
2.0.12
2.0.11
2.0.10
2.0.9
2.0.8
2.0.7
2.0.6
2.0.4
2.0.3
2.0.2
2.0.1
1.3.8
1.3.7
1.3.6
1.3.5
1.3.4
9.4.0.0-r3
3.2.3
3.2.0
3.1.3
3.1.2
3.1.1
3.1.0
2.2.0
2.4.6
2.4.7
3.0.1
3.0.0
2.4.5
2.4.3
2.4.4
2.4.2
2.4.1
2.4.0
2.3.3
2.3.2
2.3.1
2.3.0
2.2.2
2.2.1
2.1.0
2.0.0
1.8.2
Vulnerabilities (293)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU93519 - Out-of-bounds read CVE-2024-37371 |
CWE-125 | Medium | 2.0.26, 3.2.4 | 01.07.2024 |
SB2024070148 SB2024070491 SB2024070496 and 114 more |
||
| #VU93518 - Improper input validation CVE-2024-37370 |
CWE-20 | Medium | 2.0.26, 3.2.4 | 01.07.2024 |
SB2024070148 SB2024070491 SB2024070496 and 96 more |
||
| #VU93487 - Use of a Broken or Risky Cryptographic Algorithm CVE-2024-27256 |
CWE-327 | Medium | 2.0.23, 3.2.0 | 28.06.2024 |
SB2024062828 |
||
| #VU92944 - Error Handling CVE-2024-26906 |
CWE-388 | Low | 2.0.25, 3.2.3, 9.3.0.20-r2, 9.4.0.0-r3 | 20.06.2024 |
SB20240620224 SB2024062493 SB20240702138 and 41 more |
||
| #VU91374 - Divide By Zero CVE-2024-27059 |
CWE-369 | Low | 2.0.25, 3.2.3, 9.3.0.20-r2, 9.4.0.0-r3 | 08.06.2024 |
SB2024060897 SB2024061046 SB2024062570 and 46 more |
||
| #VU90857 - Improper input validation CVE-2024-26982 |
CWE-20 | Low | 2.0.25, 3.2.3, 9.3.0.20-r2, 9.4.0.0-r3 | 03.06.2024 |
SB20240603130 SB2024070838 SB2024070839 and 69 more |
||
| #VU90768 - Improper Locking CVE-2024-27014 |
CWE-667 | Low | 2.0.25, 3.2.3, 9.3.0.20-r2, 9.4.0.0-r3 | 03.06.2024 |
SB2024060368 SB2024062570 SB2024062810 and 30 more |
||
| #VU90524 - NULL Pointer Dereference CVE-2024-27048 |
CWE-476 | Low | 2.0.25, 3.2.3, 9.3.0.20-r2, 9.4.0.0-r3 | 31.05.2024 |
SB20240531426 SB2024062570 SB2024070903 and 20 more |
||
| #VU90180 - Use After Free CVE-2024-27052 |
CWE-416 | Low | 2.0.25, 3.2.3, 9.3.0.20-r2, 9.4.0.0-r3 | 31.05.2024 |
SB20240531101 SB2024062570 SB2024070206 and 33 more |
||
| #VU88828 - Resource exhaustion CVE-2024-3651 |
CWE-400 | Medium | 2.0.23, 3.2.0 | 19.04.2024 |
SB2024041905 SB2024041906 SB2024041907 and 112 more |
||
| #VU88226 - Missing release of memory after effective lifetime CVE-2024-26461 |
CWE-401 | Medium | 9.3.0.20-r2, 9.4.0.0-r3 | 09.04.2024 |
SB2024040939 SB2024040943 SB20240611102 and 46 more |
||
| #VU88225 - Missing release of memory after effective lifetime CVE-2024-26458 |
CWE-401 | Medium | 2.0.23, 3.2.0 | 09.04.2024 |
SB2024040938 SB2024040943 SB20240611102 and 47 more |
||
| #VU88144 - Improper input validation CVE-2024-28182 |
CWE-20 | Medium | 2.0.25, 3.2.3, 9.3.0.20-r2, 9.4.0.0-r3 | 04.04.2024 |
SB2024040442 SB2024040443 SB2024040444 and 124 more |
||
| #VU87538 - Resource exhaustion CVE-2024-28180 |
CWE-400 | Medium | 9.3.0.20-r2, 9.4.0.0-r3 | 14.03.2024 |
SB2024031446 SB2024031447 SB2024031448 and 106 more |
||
| #VU86052 - Use After Free CVE-2024-25062 |
CWE-416 | High | 9.3.0.20-r2, 9.4.0.0-r3 | 05.02.2024 |
SB2024020507 SB2024020508 SB2024020742 and 115 more |
||
| #VU85991 - Security Features CVE-2024-21626 |
CWE-254 | High | 9.3.0.20-r2, 9.4.0.0-r3 | 01.02.2024 |
SB2024020112 SB2024020113 SB2024020123 and 78 more |
||
| #VU85658 - Insufficient Verification of Data Authenticity CVE-2023-7008 |
CWE-345 | Medium | 2.0.23, 3.2.0 | 22.01.2024 |
SB2024012238 SB2024012239 SB2024012240 and 38 more |
||
| #VU85552 - Resource exhaustion CVE-2024-22365 |
CWE-400 | Low | 2.0.23, 3.2.0 | 17.01.2024 |
SB2024011799 SB20240117126 SB2024011839 and 44 more |
||
| #VU84540 - Unchecked Return Value CVE-2023-6918 |
CWE-252 | Low | 2.0.23, 3.2.0 | 19.12.2023 |
SB2023121906 SB2023121910 SB2023121911 and 63 more |
||
| #VU84538 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2023-6004 |
CWE-78 | Medium | 2.0.23, 3.2.0 | 19.12.2023 |
SB2023121905 SB2023121906 SB2023121910 and 58 more |
Showing elements 101 - 120 out of 293