Security patches: DoS attacks on IBM App Connect Enterprise possible

IBM's integration software offering, App Connect Enterprise, is vulnerable. In recent versions, developers have closed a security gap.

listen Print view
A woman presses a symbolic update button.

(Image: Alfa Photo/Shutterstock.com)

1 min. read

If attackers successfully exploit a vulnerability in IBM App Connect Enterprise, they can cause instances to crash. Versions equipped to handle this provide a remedy.

Videos by heise

As a warning message indicates, systems are vulnerable due to insufficient filtering of certain inputs. Consequently, attackers could exploit the vulnerability (CVE-2025-12758 "high") with specific inputs. This leads to memory errors, which typically result in crashes (DoS condition). So far, there are no indications that attackers are already exploiting the vulnerability. However, IBM advises admins to update promptly.

The developers assure that the security problem has been resolved in versions IBM App Connect Enterprise v12- Fix Pack Release 12.0.12.21 and IBM App Connect Enterprise v13- Fix Pack Release 13.0.5.2.

(des)

Don't miss any news – follow us on Facebook, LinkedIn or Mastodon.

This article was originally published in German. It was translated with technical assistance and editorially reviewed before publication.