PT-2023-2144 · Ibm · Ibm Db2

CVE-2022-43929

·

Published

2023-02-08

·

Updated

2023-02-25

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions IBM Db2 for Linux, UNIX and Windows versions 11.1 through 11.5
Description The issue is related to insufficient input validation in the database management system, which can be exploited to cause a Denial of Service by executing a specially crafted 'Load' command.
Recommendations For versions 11.1 through 11.5, consider disabling the Load command functionality until a patch is available to prevent potential Denial of Service attacks.

Fix

DoS

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2023-01885
CVE-2022-43929

Affected Products

Ibm Db2