CVE-2023-38740: IBM Db2 denial of service
IBM Db2 for Linux, UNIX, and Windows (includes Db2 Connect Server) 11.5 is vulnerable to a denial of service with a specially crafted SQL statement. IBM X-Force ID: 262613.
Other sources
IBM Db2 for Linux, UNIX, and Windows (includes Db2 Connect Server) is vulnerable to a denial of service with a specially crafted SQL statement.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for the IBM Db2 vulnerability?
The vulnerability ID for the IBM Db2 vulnerability is CVE-2023-38740.
What is the severity of CVE-2023-38740?
The severity of CVE-2023-38740 is high with a CVSS score of 7.5.
What is the affected software for CVE-2023-38740?
The affected software for CVE-2023-38740 is IBM Db2 for Linux, UNIX, and Windows (includes Db2 Connect Server) 11.5.
What is the impact of the CVE-2023-38740 vulnerability?
The CVE-2023-38740 vulnerability allows an attacker to cause a denial of service by using a specially crafted SQL statement.
How to fix CVE-2023-38740?
To fix CVE-2023-38740, update IBM Db2 for Linux, UNIX, and Windows to a version higher than 11.5.8.