First published: Mon Jul 01 2019(Updated: )
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.1 could allow an authenticated user to execute a function that would cause the server to crash. IBM X-Force ID: 162714.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM DB2 Universal Database | >=11.1.3<=11.1.3.3 | |
IBM DB2 Universal Database | >=11.1.4<=11.1.4.4 | |
IBM AIX | ||
Linux Kernel | ||
Microsoft Windows Operating System | ||
Oracle Solaris and Zettabyte File System (ZFS) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-4386 has a medium severity rating, indicating that it can lead to potential disruption in service.
To fix CVE-2019-4386, you should apply the latest security patches available for IBM DB2.
CVE-2019-4386 affects IBM DB2 for Linux, UNIX, and Windows versions 11.1 before 11.1.4.5.
CVE-2019-4386 allows authenticated users to execute a function that may crash the DB2 server.
No specific workarounds are provided for CVE-2019-4386; patching is the recommended solution.