Vulnerabilities > CVE-2007-6053 - Resource Management Errors vulnerability in IBM DB2 Universal Database

047910
CVSS 9.3 - CRITICAL
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
linux
microsoft
unix
ibm
CWE-399
critical
nessus

Summary

IBM DB2 UDB 9.1 before Fixpak 4 does not properly handle use of large numbers of file descriptors, which might allow attackers to have an unknown impact involving "memory corruption." NOTE: the vendor description of this issue is too vague to be certain that it is security-related.

Vulnerable Configurations

Part Description Count
OS
Linux
1
OS
Microsoft
1
OS
Unix
1
Application
Ibm
1

Common Weakness Enumeration (CWE)

Nessus

NASL familyDatabases
NASL idDB2_9FP4.NASL
descriptionAccording to its version, the installation of IBM DB2 running on the remote host is affected by one or more of the following issues : - The
last seen2020-06-01
modified2020-06-02
plugin id28227
published2007-11-16
reporterThis script is Copyright (C) 2007-2018 and is owned by Tenable, Inc. or an Affiliate thereof.
sourcehttps://www.tenable.com/plugins/nessus/28227
titleIBM DB2 < 9 Fix Pack 4 Multiple Vulnerabilities