CVE-2024-25048

IBM MQ Appliance 9.3 CD and LTS are vulnerable to a heap-based buffer overflow, caused by improper bounds checking. A remote authenticated attacker could overflow a buffer and execute arbitrary code on the system or cause the server to crash. IBM X-Force ID: 283137.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:mq_appliance:*:*:*:*:lts:*:*:*
cpe:2.3:a:ibm:mq_appliance:*:*:*:*:continuous_delivery:*:*:*

History

03 Jul 2025, 20:45

Type Values Removed Values Added
CPE cpe:2.3:a:ibm:mq_appliance:*:*:*:*:continuous_delivery:*:*:*
cpe:2.3:a:ibm:mq_appliance:*:*:*:*:lts:*:*:*
First Time Ibm
Ibm mq Appliance
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/283137 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/283137 - Third Party Advisory
References () https://www.ibm.com/support/pages/node/7149481 - () https://www.ibm.com/support/pages/node/7149481 - Vendor Advisory

21 Nov 2024, 09:00

Type Values Removed Values Added
Summary
  • (es) El CD y LTS de IBM MQ Appliance 9.3 son vulnerables a un desbordamiento de búfer de almacenamiento dinámico, provocado por una comprobación de los límites incorrecta. Un atacante remoto autenticado podría desbordar un búfer y ejecutar código arbitrario en el sistema o provocar que el servidor falle. ID de IBM X-Force: 283137.
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/283137 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/283137 -
References () https://www.ibm.com/support/pages/node/7149481 - () https://www.ibm.com/support/pages/node/7149481 -

27 Apr 2024, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-27 12:15

Updated : 2025-07-03 20:45


NVD link : CVE-2024-25048

Mitre link : CVE-2024-25048

CVE.ORG link : CVE-2024-25048


JSON object : View

Products Affected

ibm

  • mq_appliance
CWE
CWE-122

Heap-based Buffer Overflow