IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) federated server 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted query under certain non default conditions. IBM X-Force ID: 291307.
The product generates a query intended to access or manipulate data in a data store such as a database, but it does not neutralize or incorrectly neutralizes special elements that can modify the intended logic of the query.
Link | Tags |
---|---|
https://www.ibm.com/support/pages/node/7165341 | vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/291307 | vdb entry vendor advisory |