IBM Product Security Update Advisory (CVE-2025-36128)

IBM Product Security Update Advisory (CVE-2025-36128)

Overview

 

We have released a security update to fix vulnerabilities in IBM products. Users of affected products are advised to update to the latest version.
 

 

Affected Products

 

CVE-2025-36128

 

IBM MQ Version: 9.1 LTS
IBM MQ Version: 9.2 LTS
IBM MQ Version: 9.3 LTS
IBM MQ Version: 9.3 CD
IBM MQ version: 9.4 LTS
IBM MQ version: 9.4 CD

 

 

Resolved Vulnerabilities

 

Denial of Service Vulnerability due to a Slowloris attack in IBM MQ (CVE-2025-36128)

 

 

Vulnerability Patches

Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

CVE-2025-36128

 

See Referenced Sites[1]

 

 

References

 

[1] Security Bulletin: IBM MQ is vulnerable to Slowloris attack which is a type of denial-of-service (DoS) (CVE-2025-36128)
https://www.ibm.com/support/pages/node/7244480