cbcvebase.
CVE-2024-52894
published 2025-07-29

CVE-2024-52894: IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5.0.0 through 10.5.0.11, 11.1.0 through 11.1.4.7, 11.5.0 through 11.5.9, and 12.1.0…

medium4.9CVSS 3.1
AVNACLPRHUINSUCNINAH
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5.0.0 through 10.5.0.11, 11.1.0 through 11.1.4.7, 11.5.0 through 11.5.9, and 12.1.0 through 12.1.2 is vulnerable to a denial of service as the server may crash under certain conditions with a specially crafted query.

Affected

4 ranges
VendorProductVersion rangeFixed in
ibmdb210.5.0.0 – 10.5.0.11
ibmdb211.1.0 – 11.1.4.7
ibmdb211.5.0 – 11.5.9
ibmdb212.1.0 – 12.1.2