IBM DB2 Universal Database (UDB) Administration Server (DAS) 8 before Fix Pack 16 and 9 before Fix Pack 4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via modified pointer values in unspecified remote administration requests, which triggers memory corruption or other invalid memory access. NOTE: this might be the same issue as CVE-2008-0698.
Weaknesses in this category are related to improper management of system resources.
Link | Tags |
---|---|
http://securitytracker.com/id?1019318 | vdb entry |
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=654 | third party advisory patch |