MEDIUM · 4.0

CVE-2013-5466

The XSLT library in IBM DB2 and DB2 Connect 9.5 through 10.5, and the DB2 pureScale Feature 9.8 for Enterprise Server Edition, allows remote authenticated users to cause a denial of service via unspec...

Vulnerability Description

The XSLT library in IBM DB2 and DB2 Connect 9.5 through 10.5, and the DB2 pureScale Feature 9.8 for Enterprise Server Edition, allows remote authenticated users to cause a denial of service via unspecified vectors.

CVSS Score

4.0

MEDIUM

AV:N/AC:L/Au:S/C:N/I:N/A:P
Confidentiality
NONE
Integrity
NONE
Availability
PARTIAL

Affected Products

VendorProductVersions
IbmDb29.5
IbmDb2 Connect9.5
IbmDb2 Purescale Feature 9.8-

References

FAQ

What is CVE-2013-5466?

CVE-2013-5466 is a vulnerability with a CVSS score of 4.0 (MEDIUM). The XSLT library in IBM DB2 and DB2 Connect 9.5 through 10.5, and the DB2 pureScale Feature 9.8 for Enterprise Server Edition, allows remote authenticated users to cause a denial of service via unspec...

How severe is CVE-2013-5466?

CVE-2013-5466 has been rated MEDIUM with a CVSS base score of 4.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2013-5466?

Check the references section above for vendor advisories and patch information. Affected products include: Ibm Db2, Ibm Db2 Connect, Ibm Db2 Purescale Feature 9.8.