CVE-2025-36041
CRITICAL EPSS 23.1%
Published Jun 15, 20251y ago · Modified Jun 17, 20262w ago
9.8 CVSS 3.1
Published Jun 15, 2025 1y ago
Last Modified Jun 17, 2026 2w ago
Description
IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through 3.1.3, 3.3.0, 3.4.0, 3.4.1, 3.5.0, 3.5.1 through 3.5.3, and MQ Operator SC2 3.2.0 through 3.2.12 Native HA CRR could be configured with a private key and chain other than the intended key which could disclose sensitive information or allow the attacker to perform unauthorized actions.
CVSS Details
Base Score
Exploitability
Impact
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Attack Vector Network
Attack Complexity Low
Privileges Required None
User Interaction None
Scope Unchanged
Confidentiality High
Integrity High
Availability High
Threat Intelligence
EPSS Exploit Probability
23.1% percentile
Exploit & Patch Status
No Known Exploit
No Patch Available
Weaknesses 1
CWE-295
Affected Products 129
| Vendor | Product | Version | Range |
|---|---|---|---|
| ibm | mq_operator | * | ≥2.0.0 – ≤2.0.29 |
| ibm | mq_operator | * | ≥2.2.0 – ≤2.2.2 |
| ibm | mq_operator | * | ≥2.3.0 – ≤2.3.3 |
| ibm | mq_operator | * | ≥2.4.0 – ≤2.4.8 |
| ibm | mq_operator | * | ≥3.1.0 – ≤3.1.3 |
| ibm | mq_operator | * | ≥3.2.0 – ≤3.2.12 |
| ibm | mq_operator | * | ≥3.5.1 – ≤3.5.3 |
| ibm | mq_operator | 3.0.0 | any |
| ibm | mq_operator | 3.0.1 | any |
| ibm | mq_operator | 3.3.0 | any |
| ibm | mq_operator | 3.4.0 | any |
| ibm | mq_operator | 3.4.1 | any |
| ibm | mq_operator | 3.5.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.2 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.2 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.2 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.2 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.4 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.4 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.5 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.5 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.5 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.5 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.5 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.5 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.6 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.6 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.6 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.6 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.6 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.0.6 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.3.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.3.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.4.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.4.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.5.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.5.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.5.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.5.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.5.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.2.5.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.3 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.3 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.4 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.4 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.4 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.4 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.5 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.5 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.5 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.5 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.5 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.5 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.6 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.6 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.10 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.10 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.11 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.11 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.15 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.16 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.16 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.17 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.17 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.17 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.20 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.20 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.21 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.21 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.21 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.0.25 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.1.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.1.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.1.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.1.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.2.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.2.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.2.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.2.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.3.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.3.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.3.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.3.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.3.2 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.3.2 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.3.2 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.3.3 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.3.3 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.4.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.4.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.5.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.5.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.5.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.3.5.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.4.0.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.4.0.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.4.0.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.4.0.5 | any |
| ibm | supplied_mq_advanced_container_images | 9.4.0.5 | any |
| ibm | supplied_mq_advanced_container_images | 9.4.0.6 | any |
| ibm | supplied_mq_advanced_container_images | 9.4.0.6 | any |
| ibm | supplied_mq_advanced_container_images | 9.4.0.7 | any |
| ibm | supplied_mq_advanced_container_images | 9.4.0.10 | any |
| ibm | supplied_mq_advanced_container_images | 9.4.0.10 | any |
| ibm | supplied_mq_advanced_container_images | 9.4.0.11 | any |
| ibm | supplied_mq_advanced_container_images | 9.4.0.11 | any |
| ibm | supplied_mq_advanced_container_images | 9.4.1.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.4.1.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.4.1.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.4.2.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.4.2.0 | any |
| ibm | supplied_mq_advanced_container_images | 9.4.2.1 | any |
| ibm | supplied_mq_advanced_container_images | 9.4.2.1 | any |
References 1
- ibm.com https://www.ibm.com/support/pages/node/7236608
Remediation
No remediation data recorded yet
Check vendor advisories and the NVD entry for patch availability.