Vulnerability Description
Buffer overflow in the DAS server in IBM DB2 UDB before 8.2 Fixpak 16 has unknown attack vectors, and an impact probably involving "invalid memory access."
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Db2 | 8.2_fixpack15 |
Related Weaknesses (CWE)
References
- ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v82/APA
- http://secunia.com/advisories/28771Vendor Advisory
- http://www-1.ibm.com/support/docview.wss?uid=swg1IZ05496
- http://www.securityfocus.com/bid/27681
- http://www.vupen.com/english/advisories/2008/0401
- ftp://ftp.software.ibm.com/ps/products/db2/fixes/english-us/aparlist/db2_v82/APA
- http://secunia.com/advisories/28771Vendor Advisory
- http://www-1.ibm.com/support/docview.wss?uid=swg1IZ05496
- http://www.securityfocus.com/bid/27681
- http://www.vupen.com/english/advisories/2008/0401
FAQ
What is CVE-2008-0698?
CVE-2008-0698 is a vulnerability with a CVSS score of 7.8 (HIGH). Buffer overflow in the DAS server in IBM DB2 UDB before 8.2 Fixpak 16 has unknown attack vectors, and an impact probably involving "invalid memory access."
How severe is CVE-2008-0698?
CVE-2008-0698 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2008-0698?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Db2.