CVE-2010-3737: Low severity IBM DB2 vulnerability
Memory leak in the Relational Data Services component in IBM DB2 UDB 9.5 before FP6a allows remote authenticated users to cause a denial of service (heap memory consumption) by executing a (1) user-defined function (UDF) or (2) stored procedure while using a different code page than the database server.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-3737?
CVE-2010-3737 has a medium severity rating due to potential denial of service impacting IBM DB2 UDB 9.5.
How do I fix CVE-2010-3737?
To fix CVE-2010-3737, upgrade IBM DB2 UDB to version 9.5 FP6a or later.
Who is affected by CVE-2010-3737?
Remote authenticated users of IBM DB2 UDB versions 9.5 before FP6a are affected by CVE-2010-3737.
What causes the CVE-2010-3737 vulnerability?
CVE-2010-3737 is caused by a memory leak in the Relational Data Services component when executing user-defined functions or stored procedures with differing code pages.
What types of database operations are involved in CVE-2010-3737?
CVE-2010-3737 involves executing user-defined functions (UDFs) or stored procedures that can lead to heap memory consumption.