Denial of Service Vulnerability in IBM Db2 for Linux
CVE-2025-2533

5.3MEDIUM

Key Information:

Vendor

IBM

Status
Vendor
CVE Published:
29 July 2025

What is CVE-2025-2533?

A vulnerability has been identified in IBM Db2 for Linux where the server may become unresponsive and crash when processing specially crafted queries. This issue arises in versions 12.1.0, 12.1.1, and 12.1.2, potentially leading to significant disruptions in service availability for users relying on the database system. It is essential for organizations using these versions to implement the patches provided by IBM to safeguard their systems against this vulnerability.

Affected Version(s)

Db2 Linux 12.1.0

Db2 Linux 12.1.1

Db2 Linux 12.1.2

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-2533 : Denial of Service Vulnerability in IBM Db2 for Linux