IBM DB2 9.5 through FP10, 9.7 through FP10, 9.8 through FP5, 10.1 through FP4, and 10.5 before FP5 allows remote authenticated users to cause a denial of service (CPU consumption) via a crafted XML query.
www-01.ibm.com/support/docview.wss?uid=swg1IT05933
www-01.ibm.com/support/docview.wss?uid=swg1IT05936
www-01.ibm.com/support/docview.wss?uid=swg1IT05937
www-01.ibm.com/support/docview.wss?uid=swg1IT05938
www-01.ibm.com/support/docview.wss?uid=swg1IT05939
www-01.ibm.com/support/docview.wss?uid=swg21692358
www.securityfocus.com/bid/71734
exchange.xforce.ibmcloud.com/vulnerabilities/99110