Show filters
69 Total Results
Displaying 11-20 of 69
Sort by:
Attacker Value
Unknown

CVE-2023-52296

Disclosure Date: April 03, 2024 (last updated February 01, 2025)
IBM DB2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to denial of service when querying a specific UDF built-in function concurrently. IBM X-Force ID: 278547.
Attacker Value
Unknown

CVE-2023-38729

Disclosure Date: April 03, 2024 (last updated February 01, 2025)
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to sensitive information disclosure when using ADMIN_CMD with IMPORT or EXPORT.
Attacker Value
Unknown

CVE-2023-38003

Disclosure Date: December 04, 2023 (last updated December 08, 2023)
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 could allow a user with DATAACCESS privileges to execute routines that they should not have access to. IBM X-Force ID: 260214.
Attacker Value
Unknown

CVE-2023-40692

Disclosure Date: December 04, 2023 (last updated December 08, 2023)
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, 11.5 is vulnerable to denial of service under extreme stress conditions. IBM X-Force ID: 264807.
Attacker Value
Unknown

CVE-2023-45178

Disclosure Date: December 03, 2023 (last updated December 08, 2023)
IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5 CLI is vulnerable to a denial of service when a specially crafted request is used. IBM X-Force ID: 268073.
Attacker Value
Unknown

CVE-2023-38719

Disclosure Date: October 17, 2023 (last updated October 20, 2023)
IBM Db2 11.5 could allow a local user with special privileges to cause a denial of service during database deactivation on DPF. IBM X-Force ID: 261607.
Attacker Value
Unknown

CVE-2023-35012

Disclosure Date: July 17, 2023 (last updated October 08, 2023)
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 with a Federated configuration is vulnerable to a stack-based buffer overflow, caused by improper bounds checking. A local user with SYSADM privileges could overflow the buffer and execute arbitrary code on the system. IBM X-Force ID: 257763.
Attacker Value
Unknown

CVE-2023-30449

Disclosure Date: July 10, 2023 (last updated February 14, 2025)
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted query. IBM X-Force ID: 253439.
Attacker Value
Unknown

CVE-2023-30448

Disclosure Date: July 10, 2023 (last updated February 14, 2025)
IBM DB2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted query on certain tables. IBM X-Force ID: 253437.
Attacker Value
Unknown

CVE-2023-30447

Disclosure Date: July 10, 2023 (last updated October 08, 2023)
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted query on certain tables. IBM X-Force ID: 253436.