CVE-2006-3068: Medium severity IBM DB2 Universal Database vulnerability
Published Jun 19, 2006
·Updated
IBM DB2 Universal Database (UDB) before 8.2 FixPak 12 allows remote attackers to cause a denial of service (application crash) by sending "incorrect information ... regarding the package name/creator," which leads to a "memory overwrite."
Affected Software
1 affected component
IBM DB2 Universal Database=8.1
Remediation
Patch Available
Patch Available
Event History
Jun 19, 2006
CVE Published
10:02 AM
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-3068?
CVE-2006-3068 has a severity rating that indicates it can cause a denial of service via application crashes.
2
How do I fix CVE-2006-3068?
To fix CVE-2006-3068, upgrade to IBM DB2 Universal Database version 8.2 FixPak 12 or later.
3
What software is affected by CVE-2006-3068?
CVE-2006-3068 affects IBM DB2 Universal Database version 8.1 running on AIX.
4
Can CVE-2006-3068 be exploited remotely?
Yes, CVE-2006-3068 can be exploited remotely by sending crafted requests to the database.
5
What are the consequences of exploiting CVE-2006-3068?
Exploiting CVE-2006-3068 can lead to application crashes and service interruptions.