[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Denial of service vulnerability in IBM solidDB via a crafted SELECT statement involving a subquery (Linux)

ID: oval:org.secpod.oval:def:4375Date: (C)2012-03-02   (M)2021-09-11
Class: VULNERABILITYFamily: unix




The host is installed with IBM solidDB 6.5 before Interim Fix 5 or 7.0 before FP1 and is prone to a denial of service vulnerability. A flaw is present in the application, which fails to handle a SELECT statement with a ROWNUM condition involving a subquery. Successful exploitation could allow attackers to crash the service.

Platform:
Linux
Product:
IBM solidDB
Reference:
CVE-2011-4890
CVE    1
CVE-2011-4890
CPE    11
cpe:/a:ibm:soliddb:6.5.0.5
cpe:/a:ibm:soliddb:6.5.0.4
cpe:/a:ibm:soliddb:6.5.0.7
cpe:/a:ibm:soliddb:6.5.0.6
...

© SecPod Technologies