IBM Security Verify Information Queue Denial-of-Service Vulnerability via Special Character Handling

Vulnerability

A denial-of-service vulnerability has been identified in IBM Security Verify Information Queue versions 10.0.5, 10.0.6, 10.0.7, and 10.0.8. This vulnerability could allow a remote user to cause uncontrolled resource consumption by exploiting improper handling of special characters, leading to excessive use of system resources.

Impact

Exploitation of this vulnerability can cause a significant increase in resource consumption, potentially leading to a denial-of-service condition where the application or service becomes unresponsive or unavailable.

Remediation

Users are advised to upgrade to IBM Security Verify Information Queue version 10.0.11. The latest ISIQ images for v10.0.11 can be downloaded from the IBM Security Information Queue Starter Kit page.

Added: Sep 10, 2025, 8:23 PM
Updated: Sep 10, 2025, 8:23 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
3.3
remediation
7.7
relevance
0.5
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.