CVE-2012-0712

The XML feature in IBM DB2 9.5 before FP9, 9.7 through FP5, and 9.8 through FP4 allows remote authenticated users to cause a denial of service (infinite loop) by calling the XMLPARSE function with a crafted string expression.
Severity
UNKNOWN
AV:N/AC:L/Au:S/C:N/I:N/A:P
Atk. Vector
NETWORK
Atk. Complexity
LOW
Base Score
CVSS 3.x
EPSS Score
Percentile: 82%
VendorProductVersion
ibmdb2
9.5
ibmdb2
9.5
ibmdb2
9.5
ibmdb2
9.5
ibmdb2
9.5
ibmdb2
9.5
ibmdb2
9.5
ibmdb2
9.5
ibmdb2
9.5
ibmdb2
9.5
ibmdb2
9.5
ibmdb2
9.5
ibmdb2
9.5
ibmdb2
9.5
ibmdb2
9.7
ibmdb2
9.7
ibmdb2
9.7
ibmdb2
9.7
ibmdb2
9.7
ibmdb2
9.7
ibmdb2
9.7
ibmdb2
9.8
ibmdb2
9.8
ibmdb2
9.8
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
db2exc
zesty
dne
yakkety
dne
xenial
dne
wily
dne
vivid
dne
utopic
dne
trusty
dne
saucy
dne
raring
dne
quantal
dne
precise
ignored
oneiric
dne
natty
dne
maverick
dne
lucid
ignored
hardy
ignored
Common Weakness Enumeration