Denial of Service Vulnerability in IBM Db2 for Linux, UNIX, and Windows
CVE-2024-51473

7.5HIGH

Key Information:

Vendor

IBM

Status
Vendor
CVE Published:
29 July 2025

What is CVE-2024-51473?

IBM Db2 for Linux, UNIX, and Windows is liable to a denial of service vulnerability that may cause the server to crash when it processes a specially crafted query. This vulnerability affects multiple versions of the product and could potentially lead to service disruption, affecting the availability of the database services. Users are encouraged to implement the patches provided by IBM to mitigate this issue.

Affected Version(s)

Db2 Windows 10.5.0.0 <= 10.5.0.11

Db2 Windows 11.1.0 <= 11.1.4.7

Db2 Windows 11.5.0 <= 11.5.9

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.