Vulnerability Details CVE-2006-6638
IBM DB2 8.1 before FixPak 14 allows remote attackers to cause a denial of service via a crafted SQLJRA packet, which causes a NULL pointer dereference in the sqle_db2ra_as_recvrequest function in DB2ENGN.DLL, a different issue than CVE-2006-4257.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.009
EPSS Ranking 74.2%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2006-6638
-
cpe:2.3:a:ibm:db2_universal_database:8.1
-
cpe:2.3:a:ibm:db2_universal_database:8.1.4
-
cpe:2.3:a:ibm:db2_universal_database:8.1.5
-
cpe:2.3:a:ibm:db2_universal_database:8.1.6
-
cpe:2.3:a:ibm:db2_universal_database:8.1.6c
-
cpe:2.3:a:ibm:db2_universal_database:8.1.7
-
cpe:2.3:a:ibm:db2_universal_database:8.1.7b
-
cpe:2.3:a:ibm:db2_universal_database:8.1.8
-
cpe:2.3:a:ibm:db2_universal_database:8.1.8a
-
cpe:2.3:a:ibm:db2_universal_database:8.1.9
-
cpe:2.3:a:ibm:db2_universal_database:8.1.9a
-
cpe:2.3:a:ibm:db2_universal_database:8.10
-
cpe:2.3:a:ibm:db2_universal_database:8.12