QID 20328

Date Published: 2023-05-03

QID 20328: IBM DB2 Denial of Service (DoS) Vulnerability (6463985)

IBM Db2 may be vulnerable to a denial of service when executing a specially crafted 'Load' command.

Affected Versions:
Up to Version 11.1.4FP6
Up to Version 11.5.5FP1
QID Detection Logic: Authenticated (DB2): This QID queries the DB2 server to get the server version and fix pack level and checks to see if it's vulnerable.

Authenticated (Windows): This QID checks for vulnerable versions of DB2 on windows OS

Successful exploitation could lead to denial of service attack

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as Medium - 5 severity.
  • Solution
    Please refer to the following links 6463985
    Vendor References

    CVEs related to QID 20328

    Software Advisories
    Advisory ID Software Component Link
    6463985 URL Logo www.ibm.com/support/pages/node/6463985