CVE-2007-2582
8Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 27%
exploitation probability
27%top 2% of all CVEs
observed exploitation
nono source reports it
Multiple buffer overflows in the DB2 JDBC Applet Server (DB2JDS) service in IBM DB2 9.x and earlier allow remote attackers to (1) execute arbitrary code via a crafted packet to the DB2JDS service on tcp/6789; and cause a denial of service via (2) an invalid LANG parameter or (2) a long packet that generates a "MemTree overflow."
Affected products
n/a · n/aReferences
http://osvdb.org/40973http://osvdb.org/40975http://secunia.com/advisories/25148https://exchange.xforce.ibmcloud.com/vulnerabilities/34184http://www-1.ibm.com/support/search.wss?rs=0&q=IY97750&apar=onlyhttp://www.securityfocus.com/archive/1/482024/100/0/threadedhttp://www.securityfocus.com/bid/23890http://www.securityfocus.com/bid/26010http://www.securitytracker.com/id?1018029http://www.securitytracker.com/id?1018801http://www.vupen.com/english/advisories/2007/1707http://www.zerodayinitiative.com/advisories/ZDI-07-056.html