6.8
CVSSv2

CVE-2005-4866

Published: 31/12/2005 Updated: 29/07/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Stack-based buffer overflow in JDBC Applet Server in IBM DB2 8.1 allows remote malicious users to execute arbitrary by connecting and sending a long username, then disconnecting gracefully and reconnecting and sending a short username and an unexpected db2java.zip version, which causes a null terminator to be removed and leads to the overflow.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm db2 universal database 7.0

ibm db2 universal database 7.2

ibm db2 universal database 8.0

ibm db2 universal database 8.1

ibm db2 universal database 7.1