
CVE-2024-49350 – IBM Db2 denial of service
https://notcve.org/view.php?id=CVE-2024-49350
29 May 2025 — IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.1.0 through 11.1.4.7, 11.5.0 through 11.5.9 and 12.1.0 through 12.1.1 is vulnerable to a denial of service as the server may crash under certain conditions with a specially crafted query. • https://www.ibm.com/support/pages/node/7235069 • CWE-121: Stack-based Buffer Overflow •

CVE-2025-2518 – IBM Db2 denial of service
https://notcve.org/view.php?id=CVE-2025-2518
29 May 2025 — IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 through 11.5.9 and 12.1.0 through 12.1.1 is vulnerable to a denial of service as the server may crash under certain conditions with a specially crafted query. • https://www.ibm.com/support/pages/node/7235072 • CWE-789: Memory Allocation with Excessive Size Value •

CVE-2025-3050 – IBM Db2 denial of service
https://notcve.org/view.php?id=CVE-2025-3050
29 May 2025 — IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 through 11.5.9 and 12.1.0 through 12.1.1 could allow an authenticated user to cause a denial of service when using Q replication due to the improper allocation of CPU resources. • https://www.ibm.com/support/pages/node/7235073 • CWE-770: Allocation of Resources Without Limits or Throttling •

CVE-2025-1493 – IBM Db2 denial of service
https://notcve.org/view.php?id=CVE-2025-1493
05 May 2025 — IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 12.1.0 through 12.1.1 could allow an authenticated user to cause a denial of service due to concurrent execution of shared resources. • https://www.ibm.com/support/pages/node/7232518 • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') •

CVE-2025-0915 – IBM Db2 denial of service
https://notcve.org/view.php?id=CVE-2025-0915
05 May 2025 — IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 through 11.5.9 and 12.1.0 through 12.1.1 under specific configurations could allow an authenticated user to cause a denial of service due to insufficient release of allocated memory resources. • https://www.ibm.com/support/pages/node/7232529 • CWE-770: Allocation of Resources Without Limits or Throttling •

CVE-2025-1000 – IBM Db2 denial of service
https://notcve.org/view.php?id=CVE-2025-1000
05 May 2025 — IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 through 11.5.9 and 12.1.0 through 12.1.1 could allow an authenticated user to cause a denial of service when connecting to a z/OS database due to improper handling of automatic client rerouting. • https://www.ibm.com/support/pages/node/7232528 • CWE-770: Allocation of Resources Without Limits or Throttling •

CVE-2025-1992 – IBM Db2 denial of service
https://notcve.org/view.php?id=CVE-2025-1992
05 May 2025 — IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 through 11.5.9 and 12.1.0 through 12.1.1 could allow an authenticated user, under non default configurations, to cause a denial of service due to insufficient release of allocated memory after usage. IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 through 11.5.9 and 12.1.0 through 12.1.1 could allow an authenticated user in federation environment, to cause a denial of service due to insufficient release of allo... • https://www.ibm.com/support/pages/node/7232515 • CWE-401: Missing Release of Memory after Effective Lifetime •

CVE-2024-35152 – IBM Db2 denial of service
https://notcve.org/view.php?id=CVE-2024-35152
14 Aug 2024 — IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 could allow an authenticated user to cause a denial of service with a specially crafted query due to improper memory allocation. IBM X-Force ID: 292639. • https://exchange.xforce.ibmcloud.com/vulnerabilities/292639 • CWE-789: Memory Allocation with Excessive Size Value •

CVE-2024-22360 – IBM Db2 for Linux, UNIX and Windows denial of service
https://notcve.org/view.php?id=CVE-2024-22360
03 Apr 2024 — IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to a denial of service with a specially crafted query on certain columnar tables. IBM X-Force ID: 280905. IBM Db2 para Linux, UNIX y Windows (incluye Db2 Connect Server) 11.5 es vulnerable a una denegación de servicio con una consulta especialmente manipulada en determinadas tablas de columnas. ID de IBM X-Force: 280905. • https://https://exchange.xforce.ibmcloud.com/vulnerabilities/280905 • CWE-20: Improper Input Validation •

CVE-2023-52296 – IBM Db2 for Linux, UNIX and Windows denial of service
https://notcve.org/view.php?id=CVE-2023-52296
03 Apr 2024 — IBM DB2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 is vulnerable to denial of service when querying a specific UDF built-in function concurrently. IBM X-Force ID: 278547. IBM DB2 para Linux, UNIX y Windows (incluye Db2 Connect Server) 11.5 es vulnerable a la denegación de servicio cuando se consulta una función integrada UDF específica de forma simultánea. ID de IBM X-Force: 278547. • https://https://exchange.xforce.ibmcloud.com/vulnerabilities/278547 • CWE-20: Improper Input Validation •