PT-2010-5031 · Ibm · Ibm Db2 Udb
Published
2010-10-05
·
Updated
2017-09-19
·
CVE-2010-3737
CVSS v2.0
3.5
Low
| Vector | AV:N/AC:M/Au:S/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
IBM DB2 UDB version 9.5 before FP6a
Description
A memory leak issue exists in the Relational Data Services component, allowing remote authenticated users to cause a denial of service by consuming heap memory. This can be achieved by executing a user-defined function (UDF) or stored procedure while using a different code page than the database server.
Recommendations
For IBM DB2 UDB version 9.5 before FP6a, update to FP6a or later to resolve the issue. As a temporary workaround, consider restricting the execution of user-defined functions and stored procedures that use different code pages than the database server to minimize the risk of exploitation.
Fix
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Db2 Udb