IBM Security Bulletin: IBM WebSphere MQ Invalid client protocol flows could cause denial of service (CVE-2016-0379)

An invalid MQ client protocol flow could cause a memory access violation on the server which could impact other channels running in the same process.

CVE(s): CVE-2016-0379

Affected product(s) and affected version(s):

IBM WebSphere MQ 7.5

IBM WebSphere MQ 7.5.0.0 through 7.5.0.6 maintenance levels

IBM WebSphere MQ 8.0

IBM WebSphere MQ 8.0.0.0 through 8.0.0.4 maintenance levels

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2djmj2J
X-Force Database: http://ift.tt/2cRlzPH



from IBM Product Security Incident Response Team http://ift.tt/2djn7F2