First published: Fri Jun 24 2022(Updated: )
IBM Db2 is vulnerable to a denial of service as the server may terminate abnormally when executing specially crafted SQL statements by an authenticated user.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ibm Db2 | =9.7 | |
Ibm Db2 | =10.1 | |
Ibm Db2 | =10.5 | |
Ibm Db2 | =11.1 | |
Ibm Db2 | =11.5 | |
Linux Linux kernel | ||
Microsoft Windows | ||
Opengroup Unix |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-22389 is medium (6.5).
CVE-2022-22389 allows an authenticated user to execute specially crafted SQL statements that may cause the server to terminate abnormally, leading to a denial of service.
CVE-2022-22389 affects IBM Db2 for Linux, UNIX and Windows versions 9.7, 10.1, 10.5, 11.1, and 11.5.
Yes, IBM Db2 for Linux, UNIX and Windows is the only affected software.
To fix the vulnerability in IBM Db2 for Linux, UNIX and Windows, it is recommended to apply the latest security updates provided by IBM.