CVE-2023-47701: IBM Db2 denial of service
Published Dec 4, 2023
·Updated
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted query. IBM X-Force ID: 266166.
Affected Software
6 affected components
All of the following
Any of the following
IBM DB2>=10.5.0.0<=10.5.0.11
IBM DB2>=11.1.0.0<=11.1.4.7
IBM DB2>=11.5<=11.5.9
Any of the following
Linux Linux kernel
Microsoft Windows
Opengroup Unix
Event History
Dec 4, 2023
CVE Published
12:19 AM
Data Sourced
12:19 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this denial of service vulnerability?
The vulnerability ID of this denial of service vulnerability is CVE-2023-47701.
2
What is the severity level of CVE-2023-47701?
CVE-2023-47701 has a severity level of 7.5 (high).
3
Which versions of IBM Db2 are affected by CVE-2023-47701?
IBM Db2 versions 10.5, 11.1, and 11.5 are affected by CVE-2023-47701.
4
How can I fix the IBM Db2 denial of service vulnerability?
To fix the IBM Db2 denial of service vulnerability, upgrade to a version of IBM Db2 that is not affected by CVE-2023-47701.
5
Where can I find more information about CVE-2023-47701?
You can find more information about CVE-2023-47701 at the following references: [Reference 1](https://www.ibm.com/support/pages/node/7087180), [Reference 2](https://exchange.xforce.ibmcloud.com/vulnerabilities/266166).