CVE-2026-18096
published 2026-08-12CVE-2026-18096: IBM Db2 12.1.5 for Linux, UNIX and Windows (includes DB2 Connect Server) could allow a local attacker to cause a denial of service due to a memory leak.
PriorityP48low3.3CVSS 3.1
AVLACLPRLUINSUCNINAL
EPSS
0.10%
0.9th percentile
IBM Db2 12.1.5 for Linux, UNIX and Windows (includes DB2 Connect Server) could allow a local attacker to cause a denial of service due to a memory leak.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | db2 | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
IBM Db2 12.1.5 for Linux, UNIX and Windows (includes DB2 Connect Server) could allow a local attacker to cause a denial of service due to a memory leak.
ghsa_unreviewed·2026-08-12
CVE-2026-18096 [LOW] CWE-770 IBM Db2 12.1.5 for Linux, UNIX and Windows (includes DB2 Connect Server) could allow a local attacker to cause a denial of service due to a memory leak.
IBM Db2 12.1.5 for Linux, UNIX and Windows (includes DB2 Connect Server) could allow a local attacker to cause a denial of service due to a memory leak.
VulDB
IBM Db2 12.1.5 memory leak
vuldb·2026-08-12·CVSS 3.3
CVE-2026-18096 [LOW] IBM Db2 12.1.5 memory leak
A vulnerability was found in IBM Db2 12.1.5. It has been classified as problematic. The impacted element is an unknown function. This manipulation causes memory leak.
This vulnerability is registered as CVE-2026-18096. The attack needs to be launched locally. No exploit is available.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-08-12
Published