IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5.0.0 through 10.5.0.11, 11.1.0 through 11.1.4.7, 11.5.0 through 11.5.9, and 12.1.0 through 12.1.2 is vulnerable to a denial of service as the server may crash under certain conditions with a specially crafted query.
History

Thu, 07 Aug 2025 00:30:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:ibm:db2:*:*:*:*:*:linux:*:*
cpe:2.3:a:ibm:db2:*:*:*:*:*:unix:*:*
cpe:2.3:a:ibm:db2:*:*:*:*:*:windows:*:*

Wed, 30 Jul 2025 06:30:00 +0000

Type Values Removed Values Added
First Time appeared Ibm
Ibm db2
Vendors & Products Ibm
Ibm db2

Tue, 29 Jul 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 29 Jul 2025 19:15:00 +0000

Type Values Removed Values Added
Description IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5.0.0 through 10.5.0.11, 11.1.0 through 11.1.4.7, 11.5.0 through 11.5.9, and 12.1.0 through 12.1.2 is vulnerable to a denial of service as the server may crash under certain conditions with a specially crafted query.
Title IBM Db2 for Linux, UNIX and Windows denial of service
Weaknesses CWE-121
References
Metrics cvssV3_1

{'score': 4.9, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2025-07-29T19:00:12.910Z

Updated: 2025-07-29T19:30:03.897Z

Reserved: 2024-11-17T14:25:44.935Z

Link: CVE-2024-52894

cve-icon Vulnrichment

Updated: 2025-07-29T19:29:54.776Z

cve-icon NVD

Status : Analyzed

Published: 2025-07-29T19:15:44.670

Modified: 2025-08-07T00:28:38.390

Link: CVE-2024-52894

cve-icon Redhat

No data.