CVE-2023-27555: IBM Db2 denial of service
IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5 is vulnerable to a denial of service when attempting to use ACR client affinity for unfenced DRDA federation wrappers. IBM X-Force ID: 249187.
Other sources
IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) is vulnerable to a denial of service when attempting to use ACR client affinity for unfenced DRDA federation wrappers.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2023-27555.
What is the severity of CVE-2023-27555?
CVE-2023-27555 has a severity rating of 7.5, which is considered high.
Which software versions are affected by CVE-2023-27555?
IBM Db2 for Linux, UNIX, and Windows versions 11.5 and lower, as well as version 10.5, are affected by CVE-2023-27555.
How can I fix the vulnerability CVE-2023-27555?
To fix CVE-2023-27555, update your IBM Db2 for Linux, UNIX, and Windows software to a version that is not affected by the vulnerability.
Where can I find more information about CVE-2023-27555?
You can find more information about CVE-2023-27555 on the IBM X-Force ID website at https://exchange.xforce.ibmcloud.com/vulnerabilities/249187.