PT-2010-5031 · Ibm · Ibm Db2 Udb

Published

2010-10-05

·

Updated

2017-09-19

·

CVE-2010-3737

CVSS v2.0

3.5

Low

VectorAV:N/AC:M/Au:S/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions IBM DB2 UDB version 9.5 before FP6a
Description A memory leak issue exists in the Relational Data Services component, allowing remote authenticated users to cause a denial of service by consuming heap memory. This can be achieved by executing a user-defined function (UDF) or stored procedure while using a different code page than the database server.
Recommendations For IBM DB2 UDB version 9.5 before FP6a, update to FP6a or later to resolve the issue. As a temporary workaround, consider restricting the execution of user-defined functions and stored procedures that use different code pages than the database server to minimize the risk of exploitation.

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2010-3737

Affected Products

Ibm Db2 Udb