The Net Search Extender (NSE) implementation in the Text Search component in IBM DB2 UDB 9.5 before FP6a does not properly handle an alphanumeric Fuzzy search, which allows remote authenticated users to cause a denial of service (memory consumption and system hang) via the db2ext.textSearch function.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2010-10-05T17:00:00
Updated: 2024-08-07T03:18:53.098Z
Reserved: 2010-10-05T00:00:00
Link: CVE-2010-3740
Vulnrichment
No data.
NVD
Status : Modified
Published: 2010-10-05T18:00:33.520
Modified: 2024-11-21T01:19:29.480
Link: CVE-2010-3740
Redhat
No data.