Back to search
CVE-2005-4869
Published: Oct 6, 2007
Modified: Aug 8, 2024
PUBLISHED
Description
The (1) to_char and (2) to_date function in IBM DB2 8.1 allows local users to cause a denial of service (application crash) via an empty string in the second parameter, which causes a null pointer dereference.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
11400
vdb-entry
x_refsource_BID
IY61781
vendor-advisory
x_refsource_AIXAPAR
http://www.nextgenss.com/advisories/db205012005G.txt
x_refsource_MISC
20050105 IBM DB2 to_char and to_date Denial Of Service (#NISR05012005G)
mailing-list
x_refsource_BUGTRAQ
db2-dts-string-conversion(17614)
vdb-entry
x_refsource_XF
12733
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now