- Description
- IBM Db2 12.1.5 for Linux, UNIX and Windows (includes DB2 Connect Server) could allow a local attacker to cause a denial of service due to a memory leak.
- Source
- psirt@us.ibm.com
- NVD status
- Analyzed
- Products
- db2
CVSS 3.1
- Type
- Secondary
- Base score
- 3.3
- Impact score
- 1.4
- Exploitability score
- 1.8
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
- Severity
- LOW
- psirt@us.ibm.com
- CWE-770
- Hype score
- Not currently trending
[
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:ibm:db2:12.1.5:*:*:*:*:linux:*:*",
"matchCriteriaId": "27856144-CF8F-47BD-B48F-73DED6DF842C",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:ibm:db2:12.1.5:*:*:*:*:unix:*:*",
"matchCriteriaId": "90A5540D-985A-4599-88FA-F9CFBF3825BA",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:ibm:db2:12.1.5:*:*:*:*:windows:*:*",
"matchCriteriaId": "AC20E821-3B45-4AD6-A80A-713E686D69D1",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
]