CVE Vulnerabilities

CVE-2006-6638

Published: Dec 19, 2006 | Modified: Sep 05, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

IBM DB2 8.1 before FixPak 14 allows remote attackers to cause a denial of service via a crafted SQLJRA packet, which causes a NULL pointer dereference in the sqle_db2ra_as_recvrequest function in DB2ENGN.DLL, a different issue than CVE-2006-4257.

Affected Software

Name Vendor Start Version End Version
Db2_universal_database Ibm 8.1.4 8.1.4
Db2_universal_database Ibm 8.1.6 8.1.6
Db2_universal_database Ibm 8.1 8.1
Db2_universal_database Ibm 8.10 8.10
Db2_universal_database Ibm 8.1.8a 8.1.8a
Db2_universal_database Ibm 8.1.6c 8.1.6c
Db2_universal_database Ibm 8.1.8 8.1.8
Db2_universal_database Ibm 8.1.7b 8.1.7b
Db2_universal_database Ibm 8.1.5 8.1.5
Db2_universal_database Ibm 8.1.7 8.1.7
Db2_universal_database Ibm 8.1.9a 8.1.9a
Db2_universal_database Ibm 8.1.9 8.1.9
Db2_universal_database Ibm 8.12 8.12

References