QID 20330

Date Published: 2023-04-06

QID 20330: IBM DB2 Secure Sockets Layer (SSL) Server Spoofing Vulnerability (6953757)

IBM Db2 Connect Server is vulnerable due to the use of Apache HttpComponents.

Affected Versions:
IBM DB2 10.5 prior to version V10.5 FP11
IBM DB2 11.1 prior to version V11.1.4 FP7
IBM DB2 11.5 prior to version V11.5.8
QID Detection Logic: Authenticated (DB2): This QID queries the DB2 server to get the server version and fix pack level and checks to see if it's vulnerable.

Authenticated (Windows): This QID checks for vulnerable versions of DB2 on windows OS

Attacker could exploit this vulnerability using man-in-the-middle techniques to spoof an SSL server.

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as Medium - 5.8 severity.
  • Solution
    Please refer to the following links 6953757
    Vendor References

    CVEs related to QID 20330

    Software Advisories
    Advisory ID Software Component Link
    6953757 URL Logo www.ibm.com/support/pages/node/6953757