← Back

CVE-2012-0712

nvd nist
Published: Mar 20, 2012Modified: Apr 29, 2026

JSON object

Loading...
4.0
Vector
AV:N/AC:L/Au:S/C:N/I:N/A:P
Exploitability: 8.0 / Impact: 2.9
Source: NVD

Description

The XML feature in IBM DB2 9.5 before FP9, 9.7 through FP5, and 9.8 through FP4 allows remote authenticated users to cause a denial of service (infinite loop) by calling the XMLPARSE function with a crafted string expression.

Affected (24)

Products: Ibm: Db2
1 product
Db2
Configuration A
24 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 9.5
Version 9.5 fp1
Version 9.5 fp2
Version 9.5 fp2a
Version 9.5 fp3
Version 9.5 fp3a
Version 9.5 fp3b
Version 9.5 fp4
Version 9.5 fp4a
Version 9.5 fp5
Version 9.5 fp6
Version 9.5 fp6a
Version 9.5 fp7
Version 9.5 fp8
Version 9.7
Version 9.7 fp1
Version 9.7 fp2
Version 9.7 fp3
Version 9.7 fp3a
Version 9.7 fp4
Version 9.7 fp5
Version 9.8
Version 9.8 fp3
Version 9.8 fp4

Related CWEs

Timeline

No history available yet.