#VU16565 Improper input validation in IBM DB2 - CVE-2018-1977
Published: December 12, 2018 / Updated: December 17, 2018
IBM DB2
IBM Corporation
Description
The vulnerability allows a remote authenticated attacker to cause DoS condition on the target system.
The vulnerability exists due to an error when processing malicious input. A remote attacker can issue a specially crafted SELECT statement with TRUNCATE function and cause the service to crash.