CVE-2025-0985

IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD stores potentially sensitive information in environment variables that could be obtained by a local user.
References
Link Resource
https://www.ibm.com/support/pages/node/7184453 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:mq:9.3.0:*:*:*:continuous_delivery:*:*:*
cpe:2.3:a:ibm:mq:9.3.0:*:*:*:lts:*:*:*
cpe:2.3:a:ibm:mq:9.4.0:*:*:*:continuous_delivery:*:*:*
cpe:2.3:a:ibm:mq:9.4.0:*:*:*:lts:*:*:*

History

20 Jun 2025, 15:30

Type Values Removed Values Added
CPE cpe:2.3:a:ibm:mq:9.4.0:*:*:*:continuous_delivery:*:*:*
cpe:2.3:a:ibm:mq:9.3.0:*:*:*:lts:*:*:*
cpe:2.3:a:ibm:mq:9.4.0:*:*:*:lts:*:*:*
cpe:2.3:a:ibm:mq:9.3.0:*:*:*:continuous_delivery:*:*:*
First Time Ibm mq
Ibm
References () https://www.ibm.com/support/pages/node/7184453 - () https://www.ibm.com/support/pages/node/7184453 - Vendor Advisory
Summary
  • (es) IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS y 9.4 CD almacenan información potencialmente confidencial en variables de entorno que un usuario local podría obtener.

28 Feb 2025, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-28 17:15

Updated : 2025-06-20 15:30


NVD link : CVE-2025-0985

Mitre link : CVE-2025-0985

CVE.ORG link : CVE-2025-0985


JSON object : View

Products Affected

ibm

  • mq
CWE
CWE-526

Exposure of Sensitive Information Through Environmental Variables