CVE-2016-0211: IBM DB2

Medium severity, CVSS 4.3. EPSS: 2.1% chance of exploitation in the next 30 days.

IBM DB2 9.7 through FP11, 9.8, 10.1 through FP5, and 10.5 through FP7 on Linux, UNIX, and Windows allows remote authenticated users to cause a denial of service (daemon crash) via a crafted DRDA message.

Affected products

  • IBM DB2: version 9.8 only; version 9.8.0.1 only; version 9.8.0.2 only; version 9.8.0.3 only; version 9.8.0.4 only; version 9.8.0.5 only; …
  • IBM DB2 Connect: version 9.8 only; version 9.8.0.1 only; version 9.8.0.2 only; version 9.8.0.3 only; version 9.8.0.4 only; version 9.8.0.5 only; …

Published 2016-04-28. Last modified 2026-06-17.