IBM Security Bulletin: IBM® Db2® is affected by denial of service vulnerability in the Db2 Connect Server (CVE-2017-1519)

IBM Db2 contains a denial of service vulnerability. A remote user can cause disruption of service for Db2 Connect Server setup with a particular configuration using SSL and an alternate gateway setup.

CVE(s): CVE-2017-1519

Affected product(s) and affected version(s):

All fix pack levels of IBM Db2 V10.5 and V11.1 Connect Server editions on all platforms are affected.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2jbw334
X-Force Database: http://ift.tt/2wQdhCZ

The post IBM Security Bulletin: IBM® Db2® is affected by denial of service vulnerability in the Db2 Connect Server (CVE-2017-1519) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2wgSzZn