CyberRota Analysis
AI-GeneratedIBM Db2 versions 11.5.0 to 11.5.9 and 12.1.0 to 12.1.5 are vulnerable to a stack-based buffer overflow, which could allow an attacker controlling a DRDA server endpoint to execute arbitrary commands on Db2 clients. This vulnerability poses a significant risk, as it can lead to unauthorized access and potential data compromise. Organizations using these Db2 versions should prioritize patching to mitigate the risk of exploitation.
Original NVD Description
IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 could allow an attacker with the ability to control or impersonate a DRDA server endpoint to execute arbitrary commands on Db2 clients due to a stack-based buffer overflow that improperly copies user-controlled data into a fixed-size stack buffer without bounds checking.