CVE-2008-3858

The Downlevel DB2RA Support component in IBM DB2 9.1 before Fixpak 4a allows remote attackers to cause a denial of service (instance crash) via a crafted CONNECT data stream that simulates a V7 client connect request.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 75%
VendorProductVersion
ibmdb2_universal_database
9.1
ibmdb2_universal_database
9.1
ibmdb2_universal_database
9.1
ibmdb2_universal_database
9.1
ibmdb2_universal_database
9.1
ibmdb2_universal_database
9.1:fp2
ibmdb2_universal_database
9.1:fp2
ibmdb2_universal_database
9.1:fp2
ibmdb2_universal_database
9.1:fp2
ibmdb2_universal_database
9.1:fp2
ibmdb2_universal_database
9.1:fp3
ibmdb2_universal_database
9.1:fp3
ibmdb2_universal_database
9.1:fp3
ibmdb2_universal_database
9.1:fp3
ibmdb2_universal_database
9.1:fp3
ibmdb2_universal_database
9.1:fp4
ibmdb2_universal_database
9.1:fp4
ibmdb2_universal_database
9.1:fp4
ibmdb2_universal_database
9.1:fp4
ibmdb2_universal_database
9.1:fp4
ibmdb2_universal_database
9.1:fp4a
𝑥
= Vulnerable software versions
Common Weakness Enumeration