Description
IBM MQ could allow an authenticated attacker to cause a denial of service or potentially escalate privileges due to a heap buffer overflow when processing MQPUT operations with malformed distribution headers.
Published: 2026-09-18
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service / Privilege Escalation
Action: Immediate Patch
AI Analysis

Impact

A heap buffer overflow occurs when the queue manager processes MQPUT operations that contain malformed distribution headers. An authenticated attacker who can send such requests can trigger the overflow, which may result in a denial of service by crashing the service or in a privilege escalation if memory corruption is exploited during processing.

Affected Systems

IBM MQ 9.1 LTS up to 9.1.0.37; IBM MQ 9.2 LTS up to 9.2.0.43; IBM MQ 9.3 LTS up to 9.3.5.1; IBM MQ 9.4 LTS up to 9.4.5.1; IBM MQ 10.0.0.0.

Risk and Exploitability

The CVSS score of 8.8 indicates high severity. EPSS score of 0.00477 (0.477%) indicates a very low but nonzero exploitation probability, and the vulnerability is not yet listed in the CISA KEV catalog, implying no confirmed public exploits so far. The attack requires authentication to the queue manager, so an attacker must possess legitimate credentials or compromise an existing user. Based on the description, it is inferred that the attacker must be authenticated to the queue manager and can send specially crafted MQPUT requests, which will overflow a heap buffer, crash the service or elevate privileges, potentially enabling wider compromise of the host.

Generated by OpenCVE AI on September 19, 2026 at 17:57 UTC.

Remediation

Vendor Solution

This issue was addressed under Known Issue DT472393 IBM MQ version 9.1 LTS Apply cumulative security update 9.1.0.38 https://www.ibm.com/support/pages/downloading-ibm-mq-91-lts IBM MQ version 9.2 LTS Apply cumulative security update 9.2.0.44 https://www.ibm.com/support/pages/downloading-ibm-mq-92-lts IBM MQ version 9.3 LTS Apply cumulative security update 9.3.0.42 https://www.ibm.com/support/pages/downloading-ibm-mq-93-lts IBM MQ version 9.4 LTS Apply cumulative security update https://www.ibm.com/support/pages/downloading-ibm-mq-94-lts  9.4.0.26 https://www.ibm.com/support/pages/downloading-ibm-mq-94-lts IBM MQ version 9.3 CD, 9.4 CD and 10.0.0.0 Upgrade to IBM MQ version 10.0.0.5 https://www.ibm.com/support/pages/downloading-ibm-mq-100


OpenCVE Recommended Actions

  • Download and apply the IBM MQ cumulative security update appropriate for your version, such as update 9.1.0.38 for MQ 9.1 LTS, update 9.2.0.44 for MQ 9.2 LTS, update 9.3.0.42 for MQ 9.3 LTS, update 9.4.0.26 for MQ 9.4 LTS, or upgrade to MQ 10.0.0.5 if running 10.0.0.0.
  • Restrict the MQPUT operation to authenticated users with the minimal required privileges and disable or remove unnecessary MQPUT privileges for all other accounts to limit the potential impact of a malformed request.
  • Implement network segmentation or firewall rules that restrict external access to the queue manager’s port, ensuring only trusted systems or networks can communicate with the service until the patch is applied.

Generated by OpenCVE AI on September 19, 2026 at 17:57 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 23 Sep 2026 18:45:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:ibm:mq:*:*:*:*:continuous_delivery:*:*:*
cpe:2.3:a:ibm:mq:*:*:*:*:lts:*:*:*
cpe:2.3:a:ibm:mq:10.0.0.0:*:*:*:continuous_delivery:*:*:*

Mon, 21 Sep 2026 13:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 18 Sep 2026 16:00:00 +0000

Type Values Removed Values Added
Description IBM MQ could allow an authenticated attacker to cause a denial of service or potentially escalate privileges due to a heap buffer overflow when processing MQPUT operations with malformed distribution headers.
Title IBM MQ queue manager is vulnerable to remote code execution
First Time appeared Ibm
Ibm mq
Weaknesses CWE-122
CPEs cpe:2.3:a:ibm:mq:10.0.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.1.0.37:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.2.0.43:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.3.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.3.0.41:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.3.5.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.4.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.4.0.25:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.4.5.1:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm mq
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-09-21T12:47:23.718Z

Reserved: 2026-06-01T17:14:23.234Z

Link: CVE-2026-10575

cve-icon Vulnrichment

Updated: 2026-09-21T12:45:09.256Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-18T16:17:04.150

Modified: 2026-09-23T18:32:15.760

Link: CVE-2026-10575

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-19T18:00:14Z

Weaknesses
  • CWE-122

    Heap-based Buffer Overflow