CVE-2025-36442
EUVD-2025-20656730.01.2026, 22:15
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12.1.3 is vulnerable to a denial of service as the server may crash under certain conditions with a specially crafted query with XML columns.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| ibm | db2 | 11.5.0 ≤ 𝑥 ≤ 11.5.9 |
| ibm | db2 | 11.5.0 ≤ 𝑥 ≤ 11.5.9 |
| ibm | db2 | 11.5.0 ≤ 𝑥 ≤ 11.5.9 |
| ibm | db2 | 12.1.0 ≤ 𝑥 ≤ 12.1.3 |
| ibm | db2 | 12.1.0 ≤ 𝑥 ≤ 12.1.3 |
| ibm | db2 | 12.1.0 ≤ 𝑥 ≤ 12.1.3 |
𝑥
= Vulnerable software versions