← Back

CVE-2008-3853

nvd nist
Published: Aug 28, 2008Modified: Apr 23, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

Buffer overflow in the DAS server program in the Core DAS function component in IBM DB2 9.1 before FP4a and 9.5 before FP1 allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via unspecified vectors. NOTE: this might be related to CVE-2007-3676.

Affected (16)

1 product
Db2 Universal Database
Configuration A
16 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 9.1
Version 9.1
Version 9.1
Version 9.1
Version 9.1 fp2
Version 9.1 fp2
Version 9.1 fp2
Version 9.1 fp2
Version 9.1 fp3
Version 9.1 fp3
Version 9.1 fp3
Version 9.1 fp3
Version 9.1 fp4
Version 9.1 fp4
Version 9.1 fp4
Version 9.1 fp4

References (14)

ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v95/APARLIST.TXT (unsafe URL)
Source: cve@mitre.org
Source: cve@mitre.org
Patch
ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v95/APARLIST.TXT (unsafe URL)
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.