CVE-2026-6052: IBM® Db2® is vulnerable to running out of memory when executing certain queries with MDC tables
IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to running out of memory when executing certain queries with MDC tables.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Db2to a version that resolves this vulnerability.Fixed in V11.5.9 - Upgrade
Upgrade
IBM Db2to a version that resolves this vulnerability.Fixed in V12.1.4
Event History
Frequently Asked Questions
What is the severity of CVE-2026-6052?
CVE-2026-6052 has a high severity rating of 7.5.
What systems are affected by CVE-2026-6052?
CVE-2026-6052 affects IBM Db2 versions 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4.
How does CVE-2026-6052 manifest?
CVE-2026-6052 can cause IBM Db2 to run out of memory when executing certain queries with MDC tables.
How do I fix CVE-2026-6052?
To fix CVE-2026-6052, download the special build containing the interim fix from Fix Central for your version of IBM Db2.
What are the potential impacts of CVE-2026-6052?
CVE-2026-6052 can lead to application instability or crashes due to memory exhaustion.