{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/ibm-mq-for-hpe-nonstop-8.1.0-through-8.1.0.40/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:ibm:mq:8.1.0:*:*:*:*:hpe_nonstop:*:*"],"_cs_cves":[{"cvss":9.9,"id":"CVE-2026-10858"}],"_cs_exploited":true,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["IBM MQ for HPE NonStop (8.1.0 through 8.1.0.40)"],"_cs_severities":["critical"],"_cs_tags":["vulnerability","remote-code-execution","ibm-mq","critical"],"_cs_type":"threat","_cs_vendors":["IBM"],"content_html":"\u003cp\u003eIBM has disclosed a critical vulnerability, CVE-2026-10858, affecting IBM MQ for HPE NonStop versions 8.1.0 through 8.1.0.40. The vulnerability stems from an improper handling of multi-segment messages, resulting in a heap buffer underflow condition. An authenticated attacker can exploit this flaw to crash the message queue manager, causing a denial of service, or potentially gain arbitrary code execution capabilities with the privileges of the IBM MQ service. Given the high CVSS base score of 9.9 and the potential for remote code execution, this represents a significant risk to the integrity and availability of messaging infrastructure. Defenders should prioritize patching or applying vendor-recommended mitigations to affected NonStop environments.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eThe vulnerability poses a severe risk to messaging infrastructure relying on IBM MQ for HPE NonStop. Successful exploitation can lead to total loss of service through application crashes or unauthorized system access. Given that the impact includes potential arbitrary code execution, attackers could leverage this access for internal lateral movement, exfiltration of sensitive queued message data, or further compromise of the HPE NonStop operating environment.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eIdentify all instances of IBM MQ for HPE NonStop within the environment that are running version 8.1.0 through 8.1.0.40.\u003c/li\u003e\n\u003cli\u003ePatch affected instances immediately following vendor guidance for CVE-2026-10858.\u003c/li\u003e\n\u003cli\u003eReview access control lists (ACLs) for IBM MQ queues to restrict the number of users capable of submitting multi-segment messages, reducing the attack surface until patches are applied.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-09-18T18:06:54Z","date_published":"2026-09-18T18:06:54Z","id":"https://feed.craftedsignal.io/briefs/2026-09-ibm-mq-heap-underflow/","summary":"IBM MQ for HPE NonStop versions 8.1.0 through 8.1.0.40 contain a heap buffer underflow vulnerability in multi-segment message processing that allows authenticated attackers to execute arbitrary code or trigger denial of service.","title":"Heap Buffer Underflow in IBM MQ for HPE NonStop","url":"https://feed.craftedsignal.io/briefs/2026-09-ibm-mq-heap-underflow/"}],"language":"en","title":"CraftedSignal Threat Feed - IBM MQ for HPE NonStop (8.1.0 Through 8.1.0.40)","version":"https://jsonfeed.org/version/1.1"}