CVE-2008-3958

IBM DB2 UDB 8 before Fixpak 17 allows remote attackers to cause a denial of service (instance crash) via a crafted CONNECT/ATTACH data stream that simulates a V7 client connect/attach request. NOTE: this may overlap CVE-2008-3858. NOTE: this issue exists because of an incomplete fix for CVE-2008-3959.

Date published : 2008-09-09

http://www-1.ibm.com/support/docview.wss?uid=swg1IZ08134

http://www.securityfocus.com/bid/31058