Description
IBM MQ could allow an authenticated attacker to cause a denial of service or potentially execute arbitrary code due to an integer overflow in MQINQ request processing.
Published: 2026-09-18
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service and Potential Code Execution via Integer Overflow
Action: Patch Immediately
AI Analysis

Impact

An integer overflow in the MQINQ request handler allows an authenticated attacker to trigger a denial of service or, in worst‑case scenarios, execute arbitrary code on the queue manager. The flaw occurs when the service processes malformed queue name requests, leading to unchecked arithmetic that corrupts internal state or memory.

Affected Systems

IBM MQ versions 9.1 LTS, 9.2 LTS, 9.3 LTS, and 9.4 LTS, as well as the 9.3 and 9.4 CD releases and IBM MQ 10.0.0.0 are affected. All of these build lines are listed in the vendor certification database and are covered by the corresponding cumulative security updates.

Risk and Exploitability

The CVSS score of 8.8 indicates high severity, while the EPSS score is not available, which does not rule out exploitation but limits visibility into current threat activity. The flaw is not listed in the CISA KEV catalog. A likely attack path involves an authenticated user with access to the MQ network endpoint submitting a crafted INQ request; the need for authentication limits the visibility surface but does not eliminate risk.

Generated by OpenCVE AI on September 19, 2026 at 10:47 UTC.

Remediation

Vendor Solution

This issue was addressed under Known Issue DT473418 IBM MQ version 9.1 LTS Apply cumulative security update 9.1.0.38 https://www.ibm.com/support/pages/downloading-ibm-mq-91-lts IBM MQ version 9.2 LTS Apply cumulative security update 9.2.0.44 https://www.ibm.com/support/pages/downloading-ibm-mq-92-lts IBM MQ version 9.3 LTS Apply cumulative security update 9.3.0.42 https://www.ibm.com/support/pages/downloading-ibm-mq-93-lts IBM MQ version 9.4 LTS Apply cumulative security update https://www.ibm.com/support/pages/downloading-ibm-mq-94-lts  9.4.0.26 https://www.ibm.com/support/pages/downloading-ibm-mq-94-lts IBM MQ version 9.3 CD, 9.4 CD and 10.0.0.0 Upgrade to IBM MQ version 10.0.0.5 https://www.ibm.com/support/pages/downloading-ibm-mq-100


OpenCVE Recommended Actions

  • Apply IBM MQ 9.1 LTS cumulative security update 9.1.0.38
  • Apply IBM MQ 9.2 LTS cumulative security update 9.2.0.44
  • Apply IBM MQ 9.3 LTS cumulative security update 9.3.0.42
  • Apply IBM MQ 9.4 LTS cumulative security update 9.4.0.26
  • For IBM MQ 9.3 CD, 9.4 CD, or 10.0.0.0, upgrade to IBM MQ 10.0.0.5

Generated by OpenCVE AI on September 19, 2026 at 10:47 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 18 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
Description IBM MQ could allow an authenticated attacker to cause a denial of service or potentially execute arbitrary code due to an integer overflow in MQINQ request processing.
Title IBM MQ queue manager is vulnerable to privilege escalation
First Time appeared Ibm
Ibm mq
Weaknesses CWE-190
CPEs cpe:2.3:a:ibm:mq:10.0.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.1.0.37:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.2.0.43:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.3.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.3.0.41:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.3.5.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.4.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.4.0.25:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.4.5.1:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm mq
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-09-22T03:55:56.083Z

Reserved: 2026-06-09T02:20:32.556Z

Link: CVE-2026-11725

cve-icon Vulnrichment

Updated: 2026-09-18T19:45:07.734Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-18T20:17:03.167

Modified: 2026-09-22T19:32:25.730

Link: CVE-2026-11725

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T01:00:11Z

Weaknesses
  • CWE-190

    Integer Overflow or Wraparound