CNNVD-202601-5027 Information

CNNVD ID

CNNVD-202601-5027

CVE-2025-36423

  • CNNVD Published: 2026-01-30

Description (Chinese)

IBM Db2是美国国际商业机器(IBM)公司的一套关系型数据库管理系统。该系统的执行环境主要有UNIX、Linux、IBMi、z/OS以及Windows服务器版本。 IBM Db2 12.1.0版本至12.1.3版本存在安全漏洞,该漏洞源于数据查询逻辑中对特殊元素中和不当,可能导致本地用户发起拒绝服务攻击。

Description (English)

IBM Db2 is a relationship database management system for the United States International Business Machinery (IBM). The implementation environment for the system is mainly UNIX, Linux, IBMi, z/OS and Windows server versions. There is a security gap between IBM Db2 12.1.0 and 12.1.3, which arises from the inappropriateness of the special elements in the data search logic and may lead to a denial of service attack by local users.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

国际商业机器

Published

2026-01-30

Last Modified

2026-02-24

References

https://www.ibm.com/support/pages/node/7257694 https://access.redhat.com/security/cve/cve-2025-36423

Patch

https://www.ibm.com/support/pages/node/7257694

Share on: