IBM MQ Operator 3.2.2 and IBM MQ Operator 2.0.24 could allow a user to bypass authentication under certain configurations due to a partial string comparison vulnerability. IBM X-Force ID: 297169.
History

Wed, 07 Aug 2024 16:30:00 +0000

Type Values Removed Values Added
First Time appeared Ibm
Ibm mq Operator
Weaknesses CWE-697
CPEs cpe:2.3:a:ibm:mq_operator:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq_operator:3.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq_operator:3.0.1:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm mq Operator

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2024-07-08T13:16:10.090Z

Updated: 2024-08-02T04:26:15.955Z

Reserved: 2024-06-28T09:34:35.183Z

Link: CVE-2024-39742

cve-icon Vulnrichment

Updated: 2024-08-02T04:26:15.955Z

cve-icon NVD

Status : Analyzed

Published: 2024-07-08T14:15:02.550

Modified: 2024-08-07T16:08:52.997

Link: CVE-2024-39742

cve-icon Redhat

No data.