CVE Vulnerabilities

CVE-2020-4135

Published: Feb 19, 2020 | Modified: Nov 21, 2024
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow an unauthenticated user to send specially crafted packets to cause a denial of service from excessive memory usage.

Affected Software

NameVendorStart VersionEnd Version
Db2Ibm9.7 (including)9.7 (including)
Db2Ibm10.1 (including)10.1 (including)
Db2Ibm10.5 (including)10.5 (including)
Db2Ibm11.1 (including)11.1 (including)
Db2Ibm11.5 (including)11.5 (including)

References