CVE-2008-3958
11.09.2008, 01:13
IBM DB2 UDB 8 before Fixpak 17 allows remote attackers to cause a denial of service (instance crash) via a crafted CONNECT/ATTACH data stream that simulates a V7 client connect/attach request. NOTE: this may overlap CVE-2008-3858. NOTE: this issue exists because of an incomplete fix for CVE-2008-3959.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | db2 | 𝑥 ≤ 8.0 |
ibm | db2 | 8.0 |
ibm | db2 | 8.0:fp10 |
ibm | db2 | 8.0:fp11 |
ibm | db2 | 8.0:fp12 |
ibm | db2 | 8.0:fp13 |
ibm | db2 | 8.0:fp14 |
ibm | db2 | 8.0:fp15 |
ibm | db2 | 8.0:fp2 |
ibm | db2 | 8.0:fp3 |
ibm | db2 | 8.0:fp4 |
ibm | db2 | 8.0:fp5 |
ibm | db2 | 8.0:fp6 |
ibm | db2 | 8.0:fp6a |
ibm | db2 | 8.0:fp6b |
ibm | db2 | 8.0:fp6c |
ibm | db2 | 8.0:fp7 |
ibm | db2 | 8.0:fp7a |
ibm | db2 | 8.0:fp7b |
ibm | db2 | 8.0:fp8 |
ibm | db2 | 8.0:fp8a |
ibm | db2 | 8.0:fp9 |
ibm | db2 | 8.0:fp9a |
𝑥
= Vulnerable software versions
References