PT-2005-4354 · Ibm+1 · Ibm Db2 Content Manager+1
Publicado
2005-11-16
·
Atualizado
2017-07-11
·
CVE-2005-3568
CVSS v2.0
2.1
Baixa
| Vetor | AV:L/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
IBM DB2 Content Manager versions prior to 8.2 Fix Pack 10
Description
The issue allows local users to cause a denial of service, specifically CPU consumption, by importing a corrupted Microsoft Excel file. This can lead to the db2fmp process entering an infinite loop.
Recommendations
For versions prior to 8.2 Fix Pack 10, update to at least 8.2 Fix Pack 10 to resolve the issue. As a temporary workaround, consider restricting the import of Microsoft Excel files to minimize the risk of exploitation.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Ibm Db2 Content Manager
Office Excel