Denial-of-Service Vulnerability in IBM MQ Appliance Web Console
CVE-2024-51471
5.3MEDIUM
What is CVE-2024-51471?
The IBM MQ Appliance web console in versions 9.3 LTS, 9.3 CD, and 9.4 LTS is susceptible to a denial-of-service condition caused by improper handling of memory allocation when the trace feature is enabled. An authenticated user can exploit this vulnerability by triggering an overflow that leads to writing outside the designated buffer size, resulting in service disruption.