QID 20223
Date Published: 2021-07-15
QID 20223: IBM DB2 Denial of Service Vulnerability (6466373)
DB2 is a family of data management products, including database servers, developed by IBM.
Under special circumstances, when a table is dropped while being accessed in another session, IBM Db2 could allow an authenticated user to cause a denial of service
Affected Versions:
IBM DB2 Prior to V9.7 FP11
IBM DB2 Prior to V10.1 FP6
IBM DB2 Prior to V10.5 FP11
IBM DB2 Prior to V11.1 FP6
IBM DB2 Prior to V11.5 Mod 6 Fix Pack 0
QID Detection Logic:
Authenticated (DB2):
This QID queries the DB2 server to get the server version and fix pack level and checks to see if it's vulnerable.
Authenticated (Windows):
This QID checks for vulnerable version of DB2 on windows OS
Successful exploit could allow attacker to successfully launch denial of service attack
Please refer to the following link 6465915 for more details.
- 6466373 -
www.ibm.com/support/pages/node/6466373
CVEs related to QID 20223
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| 6466373 |
|