PT-2008-5289 · Ibm · Ibm Db2 Udb

Published

2008-09-09

·

Updated

2017-08-08

·

CVE-2008-3959

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions IBM DB2 UDB versions 8.1 before FixPak 16 IBM DB2 UDB versions 8.2 before FixPak 9 IBM DB2 UDB versions 9.1 before FixPak 4a
Description The issue allows remote attackers to cause a denial of service, resulting in an instance crash. This is achieved by sending a crafted SQLJRA packet within a CONNECT/ATTACH data stream that simulates a V7 client connect/attach request.
Recommendations For IBM DB2 UDB version 8.1, apply FixPak 16 to resolve the issue. For IBM DB2 UDB version 8.2, apply FixPak 9 to resolve the issue. For IBM DB2 UDB version 9.1, apply FixPak 4a to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2008-3959

Affected Products

Ibm Db2 Udb