CVE-2026-10747

Summary

IBM MQ Appliance could allow a remote attacker to cause a denial of service or potentially execute arbitrary code due to a heap buffer overflow in protocol message processing before authentication.

Affected Software

VendorProductVersion RangeStatus
IBMMQ Appliance9.4 LTS <= 9.4.0.0 to 9.4.0.25affected
IBMMQ Appliance9.4 CD <= 9.4.1.0 to 9.4.5.2affected
IBMMQ Appliance10.0.0.0 <= 10.0.0.1 onlyaffected

Weaknesses

  • CWE-122: CWE-122 Heap-based Buffer Overflow

References