PT-2023-2144 · Ibm · Ibm Db2

Published

2023-02-08

·

Updated

2023-02-25

·

CVE-2022-43929

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions IBM Db2 for Linux, UNIX and Windows versions 11.1 through 11.5
Description The issue is related to insufficient input validation in the database management system, which can be exploited to cause a Denial of Service by executing a specially crafted 'Load' command.
Recommendations For versions 11.1 through 11.5, consider disabling the Load command functionality until a patch is available to prevent potential Denial of Service attacks.

Fix

DoS

RCE

Weakness Enumeration

Related Identifiers

BDU:2023-01885
CVE-2022-43929

Affected Products

Ibm Db2