Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-98174
HistoryDec 08, 2023 - 12:00 a.m.

IBM Db2 Input Validation Error Vulnerability (CNVD-2023-9817439)

2023-12-0800:00:00
China National Vulnerability Database
www.cnvd.org.cn
8
ibm
db2
input validation
vulnerability
dos
runstats
table
attack

6.7 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

31.9%

IBM Db2 is a relational database management system from International Business Machines (IBM). The system’s execution environments are mainly UNIX, Linux, IBMi, z/OS, and Windows server versions. IBM DB2 suffers from an input validation error vulnerability that stems from the susceptibility to denial-of-service attacks when using the specially crafted RUNSTATS command on tables 8TB or larger. An attacker could exploit the vulnerability to cause a DoS.

6.7 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

31.9%

Related for CNVD-2023-98174