CVE-2025-33013
MEDIUMDescription
IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through 3.1.3, 3.3.0, 3.4.0, 3.4.1, 3.5.0, 3.5.1, 3.6.0, and MQ Operator SC2 3.2.0 through 3.2.13 Container could disclose sensitive information to a local user due to improper clearing of heap memory before release.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| ibm | mq_operator |
| ibm | mq_operator |
| ibm | mq_operator |
| ibm | mq_operator |
| ibm | mq_operator |
| ibm | mq_operator |
| ibm | mq_operator |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
| ibm | supplied_mq_advanced_container_images |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2025-33013? +
How severe is CVE-2025-33013? +
What products are affected by CVE-2025-33013? +
How do I check if I'm vulnerable to CVE-2025-33013? +
Related Vulnerabilities
A memory leak has been identified in the parseSWF_EXPORTASSETS function in util/parser.c of libming v0.4.8.
A memory leak has been identified in the parseSWF_SOUNDINFO function in util/parser.c of libming v0.4.8, which allows attackers to cause …
IBM Storage Virtualize 8.4, 8.5, 8.7, and 9.1 IKEv1 implementation allows remote attackers to obtain sensitive information from device memory …
A vulnerability was found in TOZED ZLT W51 up to 1.4.2 and classified as critical. Affected by this issue is …
An issue in NetSurf v3.11 causes the application to read uninitialized heap memory when creating a dom_event structure.
IBM Concert Software 1.0.0 through 2.0.0 could allow a local user to obtain sensitive information from buffers due to improper …