VYPR
Unrated severityNVD Advisory· Published Oct 5, 2010· Updated Apr 29, 2026

CVE-2010-3740

CVE-2010-3740

Description

The Net Search Extender (NSE) implementation in the Text Search component in IBM DB2 UDB 9.5 before FP6a does not properly handle an alphanumeric Fuzzy search, which allows remote authenticated users to cause a denial of service (memory consumption and system hang) via the db2ext.textSearch function.

Affected products

11
  • IBM/Db210 versions
    cpe:2.3:a:ibm:db2:9.5:*:*:*:*:*:*:*+ 9 more
    • cpe:2.3:a:ibm:db2:9.5:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:db2:9.5:fp1:*:*:*:*:*:*
    • cpe:2.3:a:ibm:db2:9.5:fp2:*:*:*:*:*:*
    • cpe:2.3:a:ibm:db2:9.5:fp2a:*:*:*:*:*:*
    • cpe:2.3:a:ibm:db2:9.5:fp3:*:*:*:*:*:*
    • cpe:2.3:a:ibm:db2:9.5:fp3a:*:*:*:*:*:*
    • cpe:2.3:a:ibm:db2:9.5:fp3b:*:*:*:*:*:*
    • cpe:2.3:a:ibm:db2:9.5:fp4:*:*:*:*:*:*
    • cpe:2.3:a:ibm:db2:9.5:fp4a:*:*:*:*:*:*
    • cpe:2.3:a:ibm:db2:9.5:fp5:*:*:*:*:*:*
  • IBM/DB2 UDBllm-fuzzy
    Range: < 9.5 FP6a

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.