QID 20360
QID 20360: IBM Db2 Denial of Service (DoS) Vulnerability (7010561)
IBM Db2 federated server is vulnerable to a denial of service as the server may crash when using a specially crafted wrapper using certain options.
Affected Versions:
IBM DB2 11.1 prior to version V11.1.4 FP7
IBM DB2 11.5 prior to version V11.5.7
IBM DB2 11.5 prior to version V11.5.8
QID Detection Logic:
Authenticated (DB2):
This QID queries the DB2 server to get the server version and fix pack level and checks to see if it's vulnerable.
Authenticated (Windows):
This QID checks for vulnerable versions of DB2 on windows OS
Successful exploitation may crash the server
Solution
Please refer to the following security advisory7010561 for further information.
Vendor References
- 7010561 -
www.ibm.com/support/pages/node/7010561
CVEs related to QID 20360
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| 7010561 |
|