CVE-2023-47141: IBM Db2 denial of service
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 could allow an authenticated user with CONNECT privileges to cause a denial of service using a specially crafted query. IBM X-Force ID: 270264.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2023-47141?
CVE-2023-47141 is categorized as a denial of service vulnerability impacting IBM DB2 for Linux, UNIX, and Windows.
How do I fix CVE-2023-47141?
To remediate CVE-2023-47141, upgrade IBM DB2 to version 11.5.9 or later to eliminate the vulnerability.
Who is affected by CVE-2023-47141?
CVE-2023-47141 affects authenticated users with CONNECT privileges on IBM DB2 for Linux, UNIX, and Windows versions prior to 11.5.9.
What types of attacks are possible with CVE-2023-47141?
CVE-2023-47141 allows attackers to craft a query that can cause a denial of service condition in the affected IBM DB2 software.
Is there a workaround for CVE-2023-47141?
Currently, the recommended approach for CVE-2023-47141 is to apply the available software update instead of relying on a workaround to mitigate the issue.