IBM DB2 8.1 before FixPak 14 allows remote attackers to cause a denial of service via a crafted SQLJRA packet, which causes a NULL pointer dereference in the sqle_db2ra_as_recvrequest function in DB2ENGN.DLL, a different issue than CVE-2006-4257.
References
Link | Resource |
---|---|
http://www.appsecinc.com/resources/alerts/db2/2006-11-30.shtml | Patch Vendor Advisory |
http://www-1.ibm.com/support/docview.wss?uid=swg1IY91847 | Patch |
http://www.securityfocus.com/bid/21646 | Patch |
http://secunia.com/advisories/23397 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2006-12-19 12:28
Updated : 2008-09-05 14:15
NVD link : CVE-2006-6638
Mitre link : CVE-2006-6638
JSON object : View
CWE
Products Affected
ibm
- db2_universal_database