Buffer Overflow Vulnerability in IBM Db2 from IBM
CVE-2026-10534

8.4HIGH

Key Information:

Vendor

IBM

Status
Vendor
CVE Published:
12 August 2026

What is CVE-2026-10534?

IBM Db2 versions 11.5.0 through 11.5.9 and 12.1.0 through 12.1.5 are susceptible to a buffer overflow vulnerability within the IXF IMPORT parser. This issue could potentially allow an attacker to execute arbitrary code or disrupt service, posing a significant risk to data integrity and availability. It is essential for users of affected versions to apply security patches provided by IBM to mitigate potential exploits and secure their database systems.

Affected Version(s)

Db2 11.5.0 <= 11.5.9

Db2 12.1.0 <= 12.1.5

References

CVSS V3.1

Score:
8.4
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.