First published: Fri Jul 07 2023(Updated: )
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted query on certain tables. IBM X-Force ID: 253361 .
Credit: psirt@us.ibm.com psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ibm Db2 | =10.5.0.11 | |
Ibm Db2 | =11.1.4.7 | |
IBM IBM® Db2® | =11.5 | |
HP HP-UX | ||
IBM AIX | ||
Linux Linux kernel | ||
Microsoft Windows | ||
Oracle Solaris | ||
<=10.5.0.11 | ||
<=11.1.4.7 | ||
<=11.5.x |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-30446 is high with a severity value of 7.
CVE-2023-30446 is a denial of service vulnerability in IBM Db2 for Linux, UNIX, and Windows versions 10.5, 11.1, and 11.5 that can be exploited with a specially crafted query on certain tables.
IBM Db2 for Linux, UNIX, and Windows versions 10.5.0.11, 11.1.4.7, and 11.5.x are affected by CVE-2023-30446.
CVE-2023-30446 can be exploited by sending a specially crafted query on certain tables.
More information about CVE-2023-30446 can be found on the IBM Support website and the IBM X-Force ID advisory page.