CVE-2023-45193: IBM Db2 denial of service
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 federated server is vulnerable to a denial of service when a specially crafted cursor is used. IBM X-Force ID: 268759.
Other sources
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) federated server is vulnerable to a denial of service when a specially crafted cursor is used.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2023-45193?
CVE-2023-45193 has been classified as a denial of service vulnerability, affecting IBM Db2 for Linux, UNIX, and Windows.
How do I fix CVE-2023-45193?
To mitigate CVE-2023-45193, apply the recommended patches and updates provided by IBM for the affected Db2 version.
Which versions of IBM Db2 are affected by CVE-2023-45193?
CVE-2023-45193 affects IBM Db2 versions up to and including 11.5.9.
What kind of attack does CVE-2023-45193 enable?
CVE-2023-45193 enables a denial of service attack through the use of specially crafted cursors.
Is there a workaround for CVE-2023-45193?
Currently, IBM has not publicly disclosed any specific workarounds for CVE-2023-45193.