4.3

CVE-2008-3858

The Downlevel DB2RA Support component in IBM DB2 9.1 before Fixpak 4a allows remote attackers to cause a denial of service (instance crash) via a crafted CONNECT data stream that simulates a V7 client connect request.

Data is provided by the National Vulnerability Database (NVD)
IbmDb2 Universal Database Version9.1 Editionaix
IbmDb2 Universal Database Version9.1 Editionhp_ux
IbmDb2 Universal Database Version9.1 Editionlinux
IbmDb2 Universal Database Version9.1 Editionsolaris
IbmDb2 Universal Database Version9.1 Editionwindows
IbmDb2 Universal Database Version9.1 Updatefp2 Editionaix
IbmDb2 Universal Database Version9.1 Updatefp2 Editionhp-ux
IbmDb2 Universal Database Version9.1 Updatefp2 Editionlinux
IbmDb2 Universal Database Version9.1 Updatefp2 Editionsolaris
IbmDb2 Universal Database Version9.1 Updatefp2 Editionwindows
IbmDb2 Universal Database Version9.1 Updatefp3 Editionaix
IbmDb2 Universal Database Version9.1 Updatefp3 Editionhp-ux
IbmDb2 Universal Database Version9.1 Updatefp3 Editionlinux
IbmDb2 Universal Database Version9.1 Updatefp3 Editionsolaris
IbmDb2 Universal Database Version9.1 Updatefp3 Editionwindows
IbmDb2 Universal Database Version9.1 Updatefp4 Editionaix
IbmDb2 Universal Database Version9.1 Updatefp4 Editionhp-ux
IbmDb2 Universal Database Version9.1 Updatefp4 Editionlinux
IbmDb2 Universal Database Version9.1 Updatefp4 Editionsolaris
IbmDb2 Universal Database Version9.1 Updatefp4 Editionwindows
IbmDb2 Universal Database Version9.1 Updatefp4a Editionaix
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1% 0.76
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:N/A:P