CVE-2018-1897: IBM DB2

High severity, CVSS 7.8. EPSS: 0.6% chance of exploitation in the next 30 days.

IBM DB2 for Linux, UNIX and Windows 9.7, 10.1, 10.5., and 11.1 db2pdcfg is vulnerable to a stack based buffer overflow, caused by improper bounds checking which could allow an attacker to execute arbitrary code. IBM X-Force ID: 152462.

Affected products

  • IBM DB2: version 9.7 only; version 10.1 only; version 10.5 only; version 11.1 only

Published 2018-11-30. Last modified 2026-06-17.