First published: Wed Aug 19 2009(Updated: )
Memory leak in the Security component in IBM DB2 8.1 before FP18 on Unix platforms allows attackers to cause a denial of service (memory consumption) via unspecified vectors, related to private memory within the DB2 memory structure.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Db2 | =8.1-fp1 | |
IBM Db2 | =8.1-fp10 | |
IBM Db2 | =8.1-fp6c | |
IBM Db2 | =8.1-fp2 | |
IBM Db2 | <=8.1 | |
IBM Db2 | =8.1-fp5 | |
IBM Db2 | =8.1-fp8 | |
IBM Db2 | =8.1-fp8a | |
IBM Db2 | =8.1-fp14 | |
IBM Db2 | =8.1-fp11 | |
IBM Db2 | =8.1-fp7 | |
IBM Db2 | =8.1-fp6b | |
IBM Db2 | =8.1-fp17a | |
IBM Db2 | =8.1-fp15 | |
IBM Db2 | =8.1-fp9a | |
IBM Db2 | =8.1-fp12 | |
IBM Db2 | =8.1-fp4 | |
IBM Db2 | =8.1-fp4a | |
IBM Db2 | =8.1-fp6 | |
IBM Db2 | =8.1-fp13 | |
IBM Db2 | =8.1-fp3 | |
IBM Db2 | =8.1-fp7a | |
IBM Db2 | =8.1-fp9 | |
IBM Db2 | =8.1-fp6a |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-2858 is classified as a high severity vulnerability that can lead to denial of service due to memory consumption.
The recommended fix for CVE-2009-2858 is to upgrade IBM DB2 to version 8.1 FP18 or later on Unix platforms.
Exploitation of CVE-2009-2858 can result in a denial of service as the vulnerability allows attackers to consume excessive memory.
CVE-2009-2858 affects IBM DB2 version 8.1 before FP18 on Unix platforms.
No official workaround exists for CVE-2009-2858; upgrading to the patched version is recommended.