Vulnerability Bulletins

IBM Security Bulletin: IBM® DB2® LUW contains a denial of service vulnerability in scalar functions (CVE-2015-0157)


System information

   
Affected software IBM

Description

IBM DB2 LUW contains a denial of service vulnerability. A remote, authenticated DB2 user could exploit this vulnerability by executing a specially-crafted SQL statement with the vulnerable scalar functions. This could result in a DB2 server crash; if so, the server would need to be restarted. CVE(s): CVE-2015-0157 Affected product(s) and affected version(s): All fix pack levels of IBM DB2 V9.7, V10.1 and V10.5 editions listed below and running on AIX, Linux, HP, Solaris or Windows are

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_db2_luw_contains_a_denial_of_service_vulnerability_in_scalar_functions_cve_2015_01571?lang=en_us

Standar resources

Property Value
CVE CVE-2015-0157 ,CVE-2015-1883 ,CVE-2014-6593 ,CVE-2015-0410 ,CVE-2014-9494 and CVE-2014-8910.

Version history

Version Comments Date
1.0 Advisory issued 2015-07-15
Ministerio de Defensa
CNI
CCN
CCN-CERT