CVE-2022-43929Improper Input Validation in IBM DB2

Severity
7.5HIGHNVD
CNA4.9
EPSS
0.1%
top 70.32%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 17

Description

IBM Db2 for Linux, UNIX and Windows 11.1 and 11.5 may be vulnerable to a Denial of Service when executing a specially crafted 'Load' command. IBM X-Force ID: 241676.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages1 packages

NVDibm/db211.1, 11.5+1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-qwmj-m695-7c2c: IBM Db2 for Linux, UNIX and Windows 112023-02-17
CVEList
IBM Db2 for Linux, UNIX and Windows denial of service2023-02-17
CVE-2022-43929 — Improper Input Validation in IBM DB2 | cvebase