7.5

CVE-2008-3958

IBM DB2 UDB 8 before Fixpak 17 allows remote attackers to cause a denial of service (instance crash) via a crafted CONNECT/ATTACH data stream that simulates a V7 client connect/attach request.  NOTE: this may overlap CVE-2008-3858.  NOTE: this issue exists because of an incomplete fix for CVE-2008-3959.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
IbmDb2 Updatefp16 Version <= 8.0
IbmDb2 Version8.0
IbmDb2 Version8.0 Updatefp10
IbmDb2 Version8.0 Updatefp11
IbmDb2 Version8.0 Updatefp12
IbmDb2 Version8.0 Updatefp13
IbmDb2 Version8.0 Updatefp14
IbmDb2 Version8.0 Updatefp15
IbmDb2 Version8.0 Updatefp2
IbmDb2 Version8.0 Updatefp3
IbmDb2 Version8.0 Updatefp4
IbmDb2 Version8.0 Updatefp5
IbmDb2 Version8.0 Updatefp6
IbmDb2 Version8.0 Updatefp6a
IbmDb2 Version8.0 Updatefp6b
IbmDb2 Version8.0 Updatefp6c
IbmDb2 Version8.0 Updatefp7
IbmDb2 Version8.0 Updatefp7a
IbmDb2 Version8.0 Updatefp7b
IbmDb2 Version8.0 Updatefp8
IbmDb2 Version8.0 Updatefp8a
IbmDb2 Version8.0 Updatefp9
IbmDb2 Version8.0 Updatefp9a
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.34% 0.782
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P