|
IBM DB2 Semaphore Signaling Denial Of Service Vulnerability
The following attacks were published: - Users may set the 'DB2SHUTDOWNSEM' + pid event to shutdown the database. The following example was provided: DB2SHUTDOWNSEM000002ec - Non-zero values may be written to the 'DB2SHMSECURITYSERVICE' shared memory section and then read by setting the 'DB2NTSECURITYINPUT' input event. - Users may write to the 'DB20QM' shared memory section. The following example was provided: section write DB20QM |
|
Privacy Statement |