Denial of Service Vulnerability in IBM Db2 for Linux, UNIX, and Windows
CVE-2025-36001
6.5MEDIUM
What is CVE-2025-36001?
IBM Db2 for Linux, UNIX and Windows versions 11.5.0 to 11.5.9 and 12.1.0 to 12.1.3 is susceptible to exploitation by authenticated users through the execution of specially crafted SQL queries. These queries can lead to uncontrolled recursion, resulting in a denial of service. Proper evaluation and remediation strategies should be undertaken to mitigate the risk associated with this vulnerability.
Affected Version(s)
Db2 for Linux, UNIX and Windows 11.5.0 <= 11.5.9
Db2 for Linux, UNIX and Windows 12.1.0 <= 12.1.3