Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-98170
HistoryDec 08, 2023 - 12:00 a.m.

IBM DB2 Input Validation Error Vulnerability (CNVD-2023-9817085)

2023-12-0800:00:00
China National Vulnerability Database
www.cnvd.org.cn
10
ibm db2
input validation
vulnerability
denial-of-service
attack
unix
linux
ibmi
z/os
windows

6.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

31.9%

IBM Db2 is a relational database management system from International Business Machines (IBM). The system’s execution environments are mainly UNIX, Linux, IBMi, z/OS, and Windows server versions. IBM DB2 suffers from an input validation error vulnerability that stems from the susceptibility to denial-of-service attacks when specially crafted cursors are used. An attacker could exploit this vulnerability to cause a DoS.

CPENameOperatorVersion
ibm db2 >=11.5.6,le11.5.8

6.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

31.9%

Related for CNVD-2023-98170