MEDIUM
IBM Db2 denial of service
Published Jan 22, 2024
6.5
MEDIUMCVSS 3.1
EPSS 0.74%
Description
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 could allow an authenticated user with CONNECT privileges to cause a denial of service using a specially crafted query. IBM X-Force ID: 272644.
Affected products
-
Affected
- 10.5, 11.1, 11.5
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| IBM | Db2 for Linux, UNIX and Windows | unaffected | Affected
|
-
Affected
- 10.5
- 11.1
- 11.5
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| IBM | Db2 for Linux Unix and Windows | unknown | Affected
|
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (4)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-51844 Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/272644 vdb-entryVDB EntryVendor Advisory
- https://security.netapp.com/advisory/ntap-20240307-0003/
- https://www.ibm.com/support/pages/node/7105505 vendor-advisoryPatchVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-51844 | Advisory | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/272644 | vdb-entryVDB EntryVendor Advisory | |
| https://security.netapp.com/advisory/ntap-20240307-0003/ | ||
| https://www.ibm.com/support/pages/node/7105505 | vendor-advisoryPatchVendor Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner ibm
Published Jan 22, 2024
Updated Feb 13, 2025
Reserved Nov 9, 2023
Link CVE-2023-47746
CISA Vulnrichment
Updated Jan 23, 2024
Red Hat
No data
GitHub
No data