PT-2006-3970 · Ibm · Ibm Db2 Universal Database

Published

2006-06-19

·

Updated

2018-10-18

·

CVE-2006-3066

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions IBM DB2 Universal Database (UDB) versions prior to 8.1 FixPak 12
Description The issue is related to a buffer overflow in the TCP/IP listener, which can be triggered by a long MGRLVLLS message inside of an EXCSAT message when establishing a connection. This can cause a denial of service, resulting in an application crash.
Recommendations For versions prior to 8.1 FixPak 12, update to 8.1 FixPak 12 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-3066

Affected Products

Ibm Db2 Universal Database