CVE-2025-33012
- EPSS 0.16%
- Veröffentlicht 07.11.2025 18:38:29
- Zuletzt bearbeitet 07.10.2026 21:10:00
IBM Db2 10.5.0 through 10.5.11, 11.1.0 through 11.1.4.7, 11.5.0 through 11.5.9, and 12.1.0 through 12.1.3 for Linux could allow an authenticated user to regain access after account lockout due to password use after expiration date.
CVE-2025-2534
- EPSS 0.28%
- Veröffentlicht 07.11.2025 18:36:49
- Zuletzt bearbeitet 07.10.2026 21:10:00
IBM Db2 11.1.0 through 11.1.4.7, 11.5.0 through 11.5.9, and 12.1.0 through 12.1.3 for Linux, UNIX and Windows (includes Db2 Connect Server) is vulnerable to a denial of service as the server may crash under certain conditions with a specially crafted...
CVE-2024-47118
- EPSS 0.29%
- Veröffentlicht 07.11.2025 18:23:07
- Zuletzt bearbeitet 02.10.2026 00:10:00
IBM Db2 10.5.0 through 10.5.11, 11.1.0 through 11.1.4.7, 11.5.0 through 11.5.9, and 12.1.0 through 12.1.3 for Linux, UNIX and Windows (includes Db2 Connect Server) is vulnerable to a denial of service as the server may crash under certain conditions ...
CVE-2024-49828
- EPSS 0.3%
- Veröffentlicht 29.07.2025 19:04:20
- Zuletzt bearbeitet 13.08.2025 19:20:09
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5.0.0 through 10.5.0.11, 11.1.0 through 11.1.4.7, 11.5.0 through 11.5.9, and 12.1.0 through 12.1.2 is vulnerable to a denial of service as the server may crash under certain conditi...
CVE-2024-51473
- EPSS 0.3%
- Veröffentlicht 29.07.2025 19:02:40
- Zuletzt bearbeitet 13.08.2025 19:17:34
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5.0.0 through 10.5.0.11, 11.1.0 through 11.1.4.7, 11.5.0 through 11.5.9, and 12.1.0 through 12.1.2 is vulnerable to a denial of service as the server may crash under certain condi...
CVE-2024-52894
- EPSS 0.3%
- Veröffentlicht 29.07.2025 19:00:12
- Zuletzt bearbeitet 07.08.2025 00:28:38
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5.0.0 through 10.5.0.11, 11.1.0 through 11.1.4.7, 11.5.0 through 11.5.9, and 12.1.0 through 12.1.2 is vulnerable to a denial of service as the server may crash under certain conditi...
CVE-2025-33114
- EPSS 0.31%
- Veröffentlicht 29.07.2025 18:41:15
- Zuletzt bearbeitet 06.08.2025 19:42:05
IBM Db2 for Linux 12.1.0, 12.1.1, and 12.1.2 is vulnerable to denial of service with a specially crafted query under certain non-default conditions.
CVE-2025-33092
- EPSS 0.14%
- Veröffentlicht 29.07.2025 18:36:58
- Zuletzt bearbeitet 06.08.2025 19:37:37
IBM Db2 for Linux 12.1.0, 12.1.1, and 12.1.2 is vulnerable to a stack-based buffer overflow in db2fm, caused by improper bounds checking. A local user could overflow the buffer and execute arbitrary code on the system.
CVE-2025-36071
- EPSS 0.3%
- Veröffentlicht 29.07.2025 18:27:40
- Zuletzt bearbeitet 07.08.2025 00:31:53
IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 through 11.5.9 and 12.1.0 through 12.1.2 is vulnerable to a denial of service as the server may crash under certain conditions with a specially crafted query due to improper rel...
CVE-2025-36010
- EPSS 0.24%
- Veröffentlicht 29.07.2025 18:15:28
- Zuletzt bearbeitet 06.08.2025 19:34:24
IBM Db2 for Linux 12.1.0, 12.1.1, and 12.1.2 could allow an unauthenticated user to cause a denial of service due to executable segments that are waiting for each other to release a necessary lock.