CVE-2006-3856: Low severity IBM Informix Dynamic Server vulnerability
Published Aug 8, 2006
·Updated
IBM Informix Dynamic Server (IDS) before 9.40.xC7 and 10.00 before 10.00.xC3 allows local users to cause a denial of service (crash) via unspecified vectors.
Affected Software
9 affected components
IBM Informix Dynamic Server=9.40.uc3
IBM Informix Dynamic Server=9.40.uc2
IBM Informix Dynamic Server=9.40.tc5
IBM Informix Dynamic Server=9.40.xc5
IBM Informix Dynamic Server=9.40.uc1
IBM Informix Dynamic Server=10.0.xc1
IBM Informix Dynamic Server=10.0
IBM Informix Dynamic Server=9.4
IBM Informix Dynamic Server=9.40.uc5
Remediation
Patch Available
Patch Available
Patch Available
Event History
Aug 8, 2006
CVE Published
10:04 PM
Aug 9, 2006
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-3856?
CVE-2006-3856 is classified as a Denial of Service vulnerability that can cause the IBM Informix Dynamic Server to crash.
2
How do I fix CVE-2006-3856?
To mitigate CVE-2006-3856, upgrade the IBM Informix Dynamic Server to version 9.40.xC7 or later, or 10.00.xC3 or later.
3
Which versions of IBM Informix Dynamic Server are affected by CVE-2006-3856?
CVE-2006-3856 affects versions prior to 9.40.xC7 and 10.00.xC3 of IBM Informix Dynamic Server.
4
What types of attacks exploit CVE-2006-3856?
CVE-2006-3856 can be exploited by local users through unspecified vectors leading to service denial.
5
Can CVE-2006-3856 be exploited remotely?
No, CVE-2006-3856 requires local user access to exploit the vulnerability.