First published: Tue Nov 20 2007(Updated: )
IBM DB2 UDB 9.1 before Fixpak 4 does not properly perform vector aggregation, which might allow attackers to cause a denial of service (divide-by-zero error and DBMS crash), related to an "overflow." NOTE: the vendor description of this issue is too vague to be certain that it is security-related.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Kernel | ||
Microsoft Windows | ||
Unix Unix | ||
IBM DB2 Universal Database | <=9.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-6052 has a potential severity related to denial of service due to a divide-by-zero error.
The recommended fix for CVE-2007-6052 is to apply Fixpak 4 or a later update to IBM DB2 UDB 9.1.
CVE-2007-6052 affects IBM DB2 UDB version 9.1 prior to Fixpak 4.
CVE-2007-6052 may enable attackers to perform a denial of service attack by causing a crash of the DBMS.
While the vendor's description of CVE-2007-6052 is vague, it involves conditions that could lead to service disruptions, suggesting a potential security-related concern.