cvelist/2020/4xxx/CVE-2020-4320.json
2020-06-16 14:01:35 +00:00

99 lines
3.1 KiB
JSON

{
"problemtype": {
"problemtype_data": [
{
"description": [
{
"value": "Denial of Service",
"lang": "eng"
}
]
}
]
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "IBM",
"product": {
"product_data": [
{
"product_name": "MQ",
"version": {
"version_data": [
{
"version_value": "8.0"
},
{
"version_value": "9.0.LTS"
},
{
"version_value": "9.1.LTS"
},
{
"version_value": "9.1.CD"
}
]
}
}
]
}
}
]
}
},
"data_version": "4.0",
"impact": {
"cvssv3": {
"TM": {
"RC": "C",
"RL": "O",
"E": "U"
},
"BM": {
"AV": "N",
"I": "N",
"AC": "H",
"S": "U",
"PR": "L",
"A": "H",
"SCORE": "5.300",
"C": "N",
"UI": "N"
}
}
},
"data_type": "CVE",
"CVE_data_meta": {
"ASSIGNER": "psirt@us.ibm.com",
"ID": "CVE-2020-4320",
"STATE": "PUBLIC",
"DATE_PUBLIC": "2020-06-15T00:00:00"
},
"description": {
"description_data": [
{
"value": "IBM MQ Appliance and IBM MQ AMQP Channels 8.0, 9.0 LTS, 9.1 LTS, and 9.1 CD do not correctly block or allow clients based on the certificate distinguished name SSLPEER setting. IBM X-Force ID: 177403.",
"lang": "eng"
}
]
},
"data_format": "MITRE",
"references": {
"reference_data": [
{
"title": "IBM Security Bulletin 5736885 (MQ)",
"name": "https://www.ibm.com/support/pages/node/5736885",
"refsource": "CONFIRM",
"url": "https://www.ibm.com/support/pages/node/5736885"
},
{
"name": "ibm-mq-cve20204320-dos (177403)",
"title": "X-Force Vulnerability Report",
"refsource": "XF",
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/177403"
}
]
}
}