CVE Database
/

CVE-2009-1906

Back to search

CVE-2009-1906

Published: Jun 3, 2009

Modified: Sep 16, 2024

PUBLISHED

Description

The DRDA Services component in IBM DB2 9.1 before FP7 and 9.5 before FP4 allows remote attackers to cause a denial of service (memory corruption and application crash) via an IPv6 address in the correlation token in the APPID string, as demonstrated by an APPID string sent by the third-party DataDirect JDBC driver 3.7.32.

VendorProductVersions

n/a

n/a

affected
n/a

References

35171
vdb-entry
x_refsource_BID
IZ36683
vendor-advisory
x_refsource_AIXAPAR
IZ38874
vendor-advisory
x_refsource_AIXAPAR
35235
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now