cbcvebase.
CVE-2008-3853
published 2008-08-28

CVE-2008-3853: Buffer overflow in the DAS server program in the Core DAS function component in IBM DB2 9.1 before FP4a and 9.5 before FP1 allows remote attackers to execute…

PriorityP339critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
5.77%
92.2th percentile
Buffer overflow in the DAS server program in the Core DAS function component in IBM DB2 9.1 before FP4a and 9.5 before FP1 allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via unspecified vectors. NOTE: this might be related to CVE-2007-3676.

Affected

4 ranges
VendorProductVersion rangeFixed in
ibmdb2
ibmdb2
ibmdb2
ibmdb2_universal_database
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.