First published: Fri Jul 07 2023(Updated: )
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted query on certain tables. IBM X-Force ID: 253436.
Credit: psirt@us.ibm.com psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ibm Db2 | =10.5.0.11 | |
Ibm Db2 | =11.1.4.7 | |
IBM IBM® Db2® | =11.5 | |
HP HP-UX | ||
IBM AIX | ||
Linux Linux kernel | ||
Microsoft Windows | ||
Oracle Solaris | ||
<=10.5.0.11 | ||
<=11.1.4.7 | ||
<=11.5.x |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-30447 is a vulnerability in IBM Db2 for Linux, UNIX, and Windows that allows a denial of service attack with a specially crafted query on certain tables.
IBM Db2 versions 10.5, 11.1, and 11.5 are affected by CVE-2023-30447.
CVE-2023-30447 has a severity rating of high.
To fix CVE-2023-30447, update to a patched version of IBM Db2 for Linux, UNIX, and Windows.
You can find more information about CVE-2023-30447 on the IBM X-Force ID page and the IBM support page.