Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple buffer overflows in the DB2 JDBC Applet Server (DB2JDS) service in IBM DB2 9.x and earlier allow remote attackers to (1) execute arbitrary code via a crafted packet to the DB2JDS service on tcp/6789; and cause a denial of service via (2) an invalid LANG parameter or (2) a long packet that generates a "MemTree overflow."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM DB2数据库缓冲区溢出及拒绝服务漏洞
Vulnerability Description
IBM DB2是美国IBM公司的一套关系型数据库管理系统。该系统的执行环境主要有UNIX、Linux、IBM i、z/OS以及Windows服务器版本。 DB2的DB2JDS服务处理畸形请求数据时存在多个缓冲区溢出漏洞,远程攻击者可能利用此漏洞控制服务器或导致拒绝服务。 DB2的DB2JDS服务监听于TCP 6789端口。由于内部的sprintf()调用没有正确地处理特制报文,因此如果向该服务发送了恶意报文就可以触发栈溢出,导致执行任意指令。 此外,如果在请求中包含有无效的LANG参数,或发送报文的长度超
CVSS Information
N/A
Vulnerability Type
N/A