CVE-2008-3959
11.09.2008, 01:13
IBM DB2 UDB 8.1 before FixPak 16, 8.2 before FixPak 9, and 9.1 before FixPak 4a allows remote attackers to cause a denial of service (instance crash) via a crafted SQLJRA packet within a CONNECT/ATTACH data stream that simulates a V7 client connect/attach request.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | db2 | 𝑥 ≤ 8.1 |
ibm | db2 | 𝑥 ≤ 8.2 |
ibm | db2 | 8.1:fp1 |
ibm | db2 | 8.1:fp10 |
ibm | db2 | 8.1:fp11 |
ibm | db2 | 8.1:fp12 |
ibm | db2 | 8.1:fp13 |
ibm | db2 | 8.1:fp14 |
ibm | db2 | 8.1:fp2 |
ibm | db2 | 8.1:fp3 |
ibm | db2 | 8.1:fp4 |
ibm | db2 | 8.1:fp5 |
ibm | db2 | 8.1:fp6 |
ibm | db2 | 8.1:fp7 |
ibm | db2 | 8.1:fp8 |
ibm | db2 | 8.1:fp9 |
ibm | db2 | 8.2 |
ibm | db2 | 8.2:fp1 |
ibm | db2 | 8.2:fp2 |
ibm | db2 | 8.2:fp3 |
ibm | db2 | 8.2:fp4 |
ibm | db2 | 8.2:fp5 |
ibm | db2 | 8.2:fp6 |
ibm | db2 | 8.2:fp7 |
𝑥
= Vulnerable software versions
References