An IBM MQ 9.3 and 9.4 Client connecting to an MQ Queue Manager can cause a SIGSEGV in the AMQRMPPA channel process terminating it.
History

Wed, 23 Jul 2025 19:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:ibm:mq_appliance:*:*:*:*:continuous_delivery:*:*:*
cpe:2.3:a:ibm:mq_appliance:*:*:*:*:lts:*:*:*

Sat, 12 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.0004}


Fri, 11 Jul 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 11 Jul 2025 18:45:00 +0000

Type Values Removed Values Added
Description An IBM MQ 9.3 and 9.4 Client connecting to an MQ Queue Manager can cause a SIGSEGV in the AMQRMPPA channel process terminating it.
Title IBM MQ denial of service
First Time appeared Ibm
Ibm mq
Ibm mq Appliance
Weaknesses CWE-416
CPEs cpe:2.3:a:ibm:mq:9.3.2.0:*:*:*:continuous_delivery:*:*:*
cpe:2.3:a:ibm:mq:9.3.5.1:*:*:*:continuous_delivery:*:*:*
cpe:2.3:a:ibm:mq:9.4.0.0:*:*:*:continuous_delivery:*:*:*
cpe:2.3:a:ibm:mq:9.4.0.0:*:*:*:lts:*:*:*
cpe:2.3:a:ibm:mq:9.4.0.11:*:*:*:lts:*:*:*
cpe:2.3:a:ibm:mq:9.4.2.1:*:*:*:continuous_delivery:*:*:*
cpe:2.3:a:ibm:mq_appliance:9.3.2.0:*:*:*:continuous_delivery:*:*:*
cpe:2.3:a:ibm:mq_appliance:9.3.5.2:*:*:*:continuous_delivery:*:*:*
cpe:2.3:a:ibm:mq_appliance:9.4.0.0:*:*:*:lts:*:*:*
cpe:2.3:a:ibm:mq_appliance:9.4.0.11:*:*:*:lts:*:*:*
cpe:2.3:a:ibm:mq_appliance:9.4.1.0:*:*:*:continuous_delivery:*:*:*
cpe:2.3:a:ibm:mq_appliance:9.4.2.1:*:*:*:continuous_delivery:*:*:*
Vendors & Products Ibm
Ibm mq
Ibm mq Appliance
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2025-07-11T18:37:38.769Z

Updated: 2025-07-11T18:52:08.264Z

Reserved: 2025-04-15T09:48:13.276Z

Link: CVE-2025-3631

cve-icon Vulnrichment

Updated: 2025-07-11T18:52:00.944Z

cve-icon NVD

Status : Analyzed

Published: 2025-07-11T19:15:23.433

Modified: 2025-07-23T19:08:03.073

Link: CVE-2025-3631

cve-icon Redhat

No data.