
CVE-2024-49350 – IBM Db2 denial of service
https://notcve.org/view.php?id=CVE-2024-49350
29 May 2025 — IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.1.0 through 11.1.4.7, 11.5.0 through 11.5.9 and 12.1.0 through 12.1.1 is vulnerable to a denial of service as the server may crash under certain conditions with a specially crafted query. • https://www.ibm.com/support/pages/node/7235069 • CWE-121: Stack-based Buffer Overflow •

CVE-2025-2518 – IBM Db2 denial of service
https://notcve.org/view.php?id=CVE-2025-2518
29 May 2025 — IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 through 11.5.9 and 12.1.0 through 12.1.1 is vulnerable to a denial of service as the server may crash under certain conditions with a specially crafted query. • https://www.ibm.com/support/pages/node/7235072 • CWE-789: Memory Allocation with Excessive Size Value •

CVE-2025-3050 – IBM Db2 denial of service
https://notcve.org/view.php?id=CVE-2025-3050
29 May 2025 — IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 through 11.5.9 and 12.1.0 through 12.1.1 could allow an authenticated user to cause a denial of service when using Q replication due to the improper allocation of CPU resources. • https://www.ibm.com/support/pages/node/7235073 • CWE-770: Allocation of Resources Without Limits or Throttling •

CVE-2025-1493 – IBM Db2 denial of service
https://notcve.org/view.php?id=CVE-2025-1493
05 May 2025 — IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 12.1.0 through 12.1.1 could allow an authenticated user to cause a denial of service due to concurrent execution of shared resources. • https://www.ibm.com/support/pages/node/7232518 • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') •

CVE-2025-0915 – IBM Db2 denial of service
https://notcve.org/view.php?id=CVE-2025-0915
05 May 2025 — IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 through 11.5.9 and 12.1.0 through 12.1.1 under specific configurations could allow an authenticated user to cause a denial of service due to insufficient release of allocated memory resources. • https://www.ibm.com/support/pages/node/7232529 • CWE-770: Allocation of Resources Without Limits or Throttling •

CVE-2025-1000 – IBM Db2 denial of service
https://notcve.org/view.php?id=CVE-2025-1000
05 May 2025 — IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 through 11.5.9 and 12.1.0 through 12.1.1 could allow an authenticated user to cause a denial of service when connecting to a z/OS database due to improper handling of automatic client rerouting. • https://www.ibm.com/support/pages/node/7232528 • CWE-770: Allocation of Resources Without Limits or Throttling •

CVE-2025-1992 – IBM Db2 denial of service
https://notcve.org/view.php?id=CVE-2025-1992
05 May 2025 — IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 through 11.5.9 and 12.1.0 through 12.1.1 could allow an authenticated user, under non default configurations, to cause a denial of service due to insufficient release of allocated memory after usage. • https://www.ibm.com/support/pages/node/7232515 • CWE-401: Missing Release of Memory after Effective Lifetime •

CVE-2024-52903 – IBM Db2 denial of service
https://notcve.org/view.php?id=CVE-2024-52903
01 May 2025 — IBM Db2 for Linux, UNIX and Windows 12.1.0 and 12.1.1 is vulnerable to a denial of service as the server may crash under certain conditions with a specially crafted query. • https://www.ibm.com/support/pages/node/7232336 • CWE-20: Improper Input Validation •

CVE-2024-40679 – IBM Db2 information disclosure
https://notcve.org/view.php?id=CVE-2024-40679
08 Jan 2025 — IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to an information disclosure vulnerability as sensitive information may be included in a log file under specific conditions. • https://www.ibm.com/support/pages/node/7175957 • CWE-532: Insertion of Sensitive Information into Log File •

CVE-2023-30443 – IBM Db2 denial of service
https://notcve.org/view.php?id=CVE-2023-30443
19 Dec 2024 — IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to denial of service with a specially crafted query. IBM Db2 para Linux, UNIX y Windows (incluye Db2 Connect Server) 10.5, 11.1 y 11.5 es vulnerable a la denegación de servicio con una consulta especialmente manipulada. • https://www.ibm.com/support/pages/node/7010557 • CWE-770: Allocation of Resources Without Limits or Throttling •