CYBER CODE RED

Get real-time updates on Telegram

P4Verified

CVE-2025-33132: db2 high performance unload load 6.1.0.1, 6.1.0.2, 6.1.0.3 (+1 more affected versions); +1 more affected products

CVE-2025-33132. CVSS 3.1 base score 6.5 (MEDIUM, Vendor/CNA). EPSS 0.00306 (percentile 0.21305), scored 2026-10-06.

Affected technology

db2 high performance unload load · from 5.1.0.0 (inclusive), through 6.1.0.0 (inclusive)
ibm

db2 high performance unload load · 6.1.0.1
ibm

db2 high performance unload load · 6.1.0.2
ibm

db2 high performance unload load · 6.1.0.3
ibm

db2 high performance unload load · 6.5.0.0
ibm

db2 high performance unload load · 6.5.0.0 · update if1
ibm

DB2 High Performance Unload · 6.1.0.3, 5.1.0.1, 6.1.0.2, 6.5, 6.5.0.0 IF1, 6.1.0.1, 6.1, 5.1
IBM

Component: Not specified by the source

Attack conditions (Vendor/CNA, CVSS 3.1): Network (remote) · Low privileges required · No user interaction required

What an attacker can do

An authenticated user could cause the program to crash due to the incorrect calculation of the size of the data that is being pointed to. Vendor/CNA’s CVSS 3.1 assessment (base score 6.5/10) rates confidentiality and integrity impact as none; availability impact as high.

Published

CWE
CWE-467
CCR priority
26.1 /100 (P4)
CVSS 3.1
6.5 /10 · CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H · Vendor/CNA
EPSS
0.00306 · percentile 0.21394 · 2026-10-08
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2025-33132.html