CVE-2024-25015

IBM MQ 9.2 LTS, 9.3 LTS, and 9.3 CD Internet Pass-Thru could allow a remote user to cause a denial of service by sending HTTP requests that would consume all available resources. IBM X-Force ID: 281278.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:ibm:mq:*:*:*:*:lts:*:*:*
cpe:2.3:a:ibm:mq:*:*:*:*:continuous_delivery:*:*:*
cpe:2.3:a:ibm:mq:*:*:*:*:lts:*:*:*
OR cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
cpe:2.3:o:ibm:linux_on_ibm_z:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

21 Aug 2025, 15:15

Type Values Removed Values Added
CPE cpe:2.3:a:ibm:mq:*:*:*:*:lts:*:*:*
cpe:2.3:a:ibm:mq:*:*:*:*:continuous_delivery:*:*:*
cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:ibm:linux_on_ibm_z:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/281278 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/281278 - Vendor Advisory
References () https://www.ibm.com/support/pages/node/7149583 - () https://www.ibm.com/support/pages/node/7149583 - Vendor Advisory
First Time Ibm aix
Linux
Microsoft
Ibm
Microsoft windows
Ibm mq
Ibm linux On Ibm Z
Linux linux Kernel

Information

Published : 2024-05-01 17:15

Updated : 2025-08-21 15:15


NVD link : CVE-2024-25015

Mitre link : CVE-2024-25015

CVE.ORG link : CVE-2024-25015


JSON object : View

Products Affected

microsoft

  • windows

ibm

  • mq
  • linux_on_ibm_z
  • aix

linux

  • linux_kernel
CWE
CWE-406

Insufficient Control of Network Message Volume (Network Amplification)