Description
IBM MQ 9.1.0.0 through 9.1.0.37 LTS, 9.2.0.0 through 9.2.0.43 LTS, 9.3.0.0 through 9.3.0.41 LTS, 9.3.0.0 through 9.3.5.1 CD, 9.4.0.0 through 9.4.0.25 LTS, 9.4.0.0 through 9.4.5.1 CD, and 10.0.0.0 could allow a remote attacker with a trusted TLS client certificate to cause a denial of service and potentially affect memory contents due to improper validation of deeply nested certificate data during TLS certificate processing.
Published: 2026-09-15
Score: 7 High
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service
Action: Immediate Patch
AI Analysis

Impact

The vulnerability arises from improper validation of deeply nested certificate data during TLS certificate processing in IBM MQ. A remote attacker who presents a trusted client certificate can trigger a denial of service and may cause memory contents to be affected. The impact is service interruption and potential unintended memory state changes, which could disrupt queue manager operations.

Affected Systems

Affected versions include IBM MQ 9.1 LTS releases from 9.1.0.0 through 9.1.0.37, IBM MQ 9.2 LTS releases from 9.2.0.0 through 9.2.0.43, IBM MQ 9.3 LTS releases from 9.3.0.0 through 9.3.0.41 and CD releases through 9.3.5.1, IBM MQ 9.4 LTS releases from 9.4.0.0 through 9.4.0.25 and CD releases through 9.4.5.1, and IBM MQ 10.0.0.0. The vendor advisory lists cumulative security updates that address each of these releases.

Risk and Exploitability

The CVSS score of 7 denotes high severity. Although the EPSS score is below 1 %, indicating a low but non‑zero probability of exploitation, no public exploits are listed and the vulnerability is not catalogued in CISA KEV. The requirement for a trusted TLS client certificate means that environments that allow unauthenticated or external client certificates are at higher risk. Successful exploitation results in service denial and possible memory corruption, which could affect availability but not necessarily facilitate further attacks unless additional vulnerabilities exist.

Generated by OpenCVE AI on September 20, 2026 at 15:00 UTC.

Remediation

Vendor Solution

This issue was addressed under Known Issue DT473914 IBM MQ version 9.1 LTS Apply cumulative security update 9.1.0.38 https://www.ibm.com/support/pages/downloading-ibm-mq-91-lts IBM MQ version 9.2 LTS Apply cumulative security update 9.2.0.44 https://www.ibm.com/support/pages/downloading-ibm-mq-92-lts IBM MQ version 9.3 LTS Apply cumulative security update 9.3.0.42 https://www.ibm.com/support/pages/downloading-ibm-mq-93-lts IBM MQ version 9.4 LTS Apply cumulative security update https://www.ibm.com/support/pages/downloading-ibm-mq-94-lts  9.4.0.26 https://www.ibm.com/support/pages/downloading-ibm-mq-94-lts IBM MQ version 9.3 CD, 9.4 CD and 10.0.0.0 Upgrade to IBM MQ version 10.0.0.5 https://www.ibm.com/support/pages/downloading-ibm-mq-100


OpenCVE Recommended Actions

  • Apply the cumulative security update that corresponds to your IBM MQ version—9.1.0.38 for 9.1 LTS, 9.2.0.44 for 9.2 LTS, 9.3.0.42 for 9.3 LTS, 9.4.0.26 for 9.4 LTS, or upgrade to 10.0.0.5.
  • If patching cannot occur immediately, limit the use of trusted TLS client certificates or temporarily disable client‑certificate authentication to prevent the vulnerability from being exercised.
  • Consult IBM security advisories for any interim mitigation guidance and review configuration settings that affect client‑certificate acceptance.

Generated by OpenCVE AI on September 20, 2026 at 15:00 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 17 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 15 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
Description IBM MQ 9.1.0.0 through 9.1.0.37 LTS, 9.2.0.0 through 9.2.0.43 LTS, 9.3.0.0 through 9.3.0.41 LTS, 9.3.0.0 through 9.3.5.1 CD, 9.4.0.0 through 9.4.0.25 LTS, 9.4.0.0 through 9.4.5.1 CD, and 10.0.0.0 could allow a remote attacker with a trusted TLS client certificate to cause a denial of service and potentially affect memory contents due to improper validation of deeply nested certificate data during TLS certificate processing.
Title IBM MQ queue manager is vulnerable to denial of service
First Time appeared Ibm
Ibm mq
Weaknesses CWE-121
CPEs cpe:2.3:a:ibm:mq:10.0.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.1.0.37:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.2.0.43:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.3.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.3.0.41:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.3.5.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.4.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.4.0.25:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:9.4.5.1:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm mq
References
Metrics cvssV3_1

{'score': 7, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-09-17T16:22:36.020Z

Reserved: 2026-06-12T18:11:38.524Z

Link: CVE-2026-12150

cve-icon Vulnrichment

Updated: 2026-09-17T16:22:31.156Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-15T18:17:13.597

Modified: 2026-09-17T17:16:38.477

Link: CVE-2026-12150

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T15:15:17Z

Weaknesses
  • CWE-121

    Stack-based Buffer Overflow