CVE-2024-27254
MEDIUMDescription
IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.5, 11.1, and 11.5 federated server is vulnerable to denial of service with a specially crafted query under certain conditions. IBM X-Force ID: 283813.
Is your site exposed to CVE-2024-27254?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| ibm | db2 |
| ibm | db2 |
| ibm | db2 |
| ibm | db2 |
| ibm | db2 |
| ibm | db2 |
| ibm | db2 |
| ibm | db2 |
| ibm | db2 |
| hp | hp-ux |
| ibm | aix |
| ibm | linux_on_ibm_z |
| linux | linux_kernel |
| microsoft | windows |
| oracle | solaris |
References
Advisories & Patches
Frequently Asked Questions
What is CVE-2024-27254? +
How severe is CVE-2024-27254? +
What products are affected by CVE-2024-27254? +
How do I check if I'm vulnerable to CVE-2024-27254? +
Related Vulnerabilities
Zervit's portable HTTP/web server is vulnerable to remote DoS attacks when a configuration reset request is made. The vulnerability is …
A security flaw was discovered in certain NETGEAR Nighthawk RAX series routers that could allow someone already logged in to …
Penetration Testing engineers at Amazon have discovered a flaw where the camera system fails to properly handle data supplied in …
n8n before version 2.10.0 contains an input validation vulnerability in the Guardrail node that allows attackers to bypass default guardrail …
A Denial of Service (DoS) vulnerability exists in the Protobuf PHP library during the parsing of untrusted input. Maliciously structured …
In Bouncy Castle for Java before 1.85, MTI/A0 DH agreement exponentiates unvalidated peer value. This issue also affects Bouncy Castle …