CVE-2020-4161: Medium severity IBM DB2 vulnerability
Published Feb 19, 2020
·Updated
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5 could allow an authenticated attacker to cause a denial of service due to incorrect handling of certain commands. IBM X-Force ID: 174341.
Affected Software
8 affected components
IBM DB2=11.5
IBM AIX
Linux Linux kernel
Microsoft Windows
All of the following
IBM DB2=11.5
Any of the following
IBM AIX
Linux Linux kernel
Microsoft Windows
Event History
Feb 19, 2020
CVE Published
via MITRE·03:15 PM
Data Sourced
via MITRE·03:15 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-4161?
CVE-2020-4161 has a severity level that could lead to denial of service for affected systems.
2
How do I fix CVE-2020-4161?
To fix CVE-2020-4161, apply the latest security patches and updates provided by IBM for DB2 version 11.5.
3
Who is affected by CVE-2020-4161?
CVE-2020-4161 affects authenticated users of IBM DB2 for Linux, UNIX, and Windows version 11.5.
4
What types of attacks are possible with CVE-2020-4161?
CVE-2020-4161 allows authenticated attackers to potentially cause a denial of service by exploiting vulnerabilities in command handling.
5
When was CVE-2020-4161 disclosed?
CVE-2020-4161 was disclosed in 2020 as part of IBM's security updates for their database software.