CVE-2026-6053: IBM® Db2® is vulnerable to a denial of service when a specially crafted query is run with range partitioned tables
IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.4 is vulnerable to a denial of service when a specially crafted query is run with range partitioned tables.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Db2to a version that resolves this vulnerability.Fixed in V11.5.9 - Upgrade
Upgrade
IBM Db2to a version that resolves this vulnerability.Fixed in V12.1.4
Event History
Frequently Asked Questions
What is the severity of CVE-2026-6053?
CVE-2026-6053 has a medium severity rating of 5.5.
What vulnerability does CVE-2026-6053 describe?
CVE-2026-6053 describes a denial of service vulnerability in IBM Db2 when handling specially crafted queries with range partitioned tables.
Which versions of IBM Db2 are affected by CVE-2026-6053?
IBM Db2 versions 11.5.0 through 11.5.9 and 12.1.0 through 12.1.4 are affected by CVE-2026-6053.
How do I fix CVE-2026-6053?
To fix CVE-2026-6053, download the special build with the interim fix from Fix Central for the affected Db2 versions.
What type of attack does CVE-2026-6053 enable?
CVE-2026-6053 enables a denial of service attack that impacts the availability of IBM Db2 databases.