CVE-2023-28523: IBM Informix Dynamic Server

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

IBM Informix Dynamic Server 12.10 and 14.10 onsmsync is vulnerable to a heap buffer overflow, caused by improper bounds checking which could allow an attacker to execute arbitrary code. IBM X-Force ID: 250753.

Affected products

  • IBM Informix Dynamic Server: version 12.10 only; version 14.10 only
  • IBM Informix Dynamic Server On Cloud Pak For Data: any version

Published 2023-12-09. Last modified 2026-06-17.