PT-2010-5029 · Ibm · Ibm Db2 Udb
Published
2010-10-05
·
Updated
2017-09-19
·
CVE-2010-3735
CVSS v2.0
2.1
Low
| Vector | AV:N/AC:H/Au:S/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
IBM DB2 UDB version 9.5 before FP6a
Description
The issue affects the "Query Compiler, Rewrite, Optimizer" component, allowing remote authenticated users to cause a denial of service by consuming CPU resources. This is achieved through a crafted query involving certain UNION ALL views, which leads to an indefinitely large amount of compilation time.
Recommendations
For IBM DB2 UDB version 9.5 before FP6a, apply FP6a to resolve the issue.
Fix
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Db2 Udb