CVE-2023-40373: IBM Db2 denial of service
IBM DB2 for Linux, UNIX and Windows (includes Db2 Connect Server) is vulnerable to denial of service with a specially crafted query containing common table expressions.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-40373.
What is the severity of CVE-2023-40373?
The severity of CVE-2023-40373 is medium with a severity value of 5.3.
What software versions are affected by CVE-2023-40373?
IBM Db2 for Linux UNIX and Windows (includes Db2 Connect Server) versions 10.5.0.x, 11.1.4.x, and 11.5.x are affected by CVE-2023-40373.
What is the impact of CVE-2023-40373?
CVE-2023-40373 allows an attacker to perform a denial of service attack by sending a specially crafted query containing common table expressions.
Are there any references available for CVE-2023-40373?
Yes, you can find more information about CVE-2023-40373 at the following references: https://exchange.xforce.ibmcloud.com/vulnerabilities/263574 and https://www.ibm.com/support/pages/node/7047563.