Denial of Service Vulnerability in IBM Db2 for Linux, UNIX and Windows
CVE-2025-36366
6.5MEDIUM
What is CVE-2025-36366?
A local user may exploit a vulnerability within IBM Db2 for Linux, UNIX and Windows, versions 11.5.0 to 11.5.9 and 12.1.0 to 12.1.3, to induce a denial of service. This arises from the improper handling of certain elements in the data query logic, allowing attackers to disrupt service and potentially affect application availability. Proper neutralization mechanisms must be implemented to safeguard against such threats.
Affected Version(s)
Db2 for Linux, UNIX and Windows 11.5.0 <= 11.5.9
Db2 for Linux, UNIX and Windows 12.1.0 <= 12.1.3