First published: Wed Nov 09 2011(Updated: )
Unspecified vulnerability in IBM DB2 9.7 before FP5 on UNIX, when the Self Tuning Memory Manager (STMM) feature and the AUTOMATIC DATABASE_MEMORY setting are configured, allows local users to cause a denial of service (daemon crash) via unknown vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Db2 | =9.7.0.3 | |
IBM Db2 | =9.7.0.1 | |
IBM Db2 | =9.7.0.2 | |
IBM Db2 | <=9.7.0.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-1373 poses a medium severity risk as it allows local users to cause a denial of service by crashing the daemon.
To mitigate CVE-2011-1373, update your IBM DB2 version to 9.7.0.5 or later.
CVE-2011-1373 affects IBM DB2 versions 9.7.0.1, 9.7.0.2, and 9.7.0.3, as well as any version up to 9.7.0.4.
CVE-2011-1373 is related to the Self Tuning Memory Manager (STMM) feature when the AUTOMATIC_DATABASE_MEMORY setting is configured.
CVE-2011-1373 is not a remote vulnerability; it can only be exploited by local users.