IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to a denial of service via email flooding caused by sending a specially-crafted request. A remote attacker could exploit this vulnerability to cause the server to consume all available CPU resources. IBM X-Force ID: 227591.
| Software | From | Fixed in |
|---|---|---|
| ibm / cognos_analytics | 11.1.7 | 11.1.7.x |
| ibm / cognos_analytics | 11.1.0 | 11.1.7 |
| ibm / cognos_analytics | 11.1.7-fixpack1 | 11.1.7-fixpack1.x |
| ibm / cognos_analytics | 11.1.7-fixpack2 | 11.1.7-fixpack2.x |
| ibm / cognos_analytics | 11.1.7-fixpack3 | 11.1.7-fixpack3.x |
| ibm / cognos_analytics | 11.1.7-fixpack4 | 11.1.7-fixpack4.x |
| ibm / cognos_analytics | 11.2.0 | 11.2.3 |