CVE-2025-36123Disclosure(ibm / db2)

LOWCVSS 5.5 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.5.0 - 11.5.9 and 12.1.0 - 12.1.3 could allow a local user to cause a denial of service when copying large table containing XML data due to improper allocation of system resources.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-770

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • db2

Threat summary

  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • Disclosure: 2 classified signals
  • Peaked 1d ago at 1 mentions (2026-01-30); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Vendors
Products
db2

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-01-30: 1Mentions · 2026-01-31: 1Technical Details · 2026-01-30: 1Technical Details · 2026-01-31: 101-3001-31
Signal classification1 categories
Disclosure
2100.0%
Referenced assets2 URLs
Full discourse2 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2025-36123 Local Denial of Service in IBM Db2 via Large XML Table Copy https://vulmon.com/vulnerabilitydetails?qid=CVE-2025-36123

    Post summary

    The text announces a local Denial of Service vulnerability in IBM Db2 triggered by large XML table copy operations, providing only high-level technical details without evidence of PoC, exploitation, or mitigation.

    00000117
    4.0K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2025-36123 IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) could allow a local user to cause a denial of service when copying large table containing XML data d… https://www.cve.org/CVERecord?id=CVE-2025-36123

    Post summary

    IBM Db2 for Linux, Unix, and Windows has a local user denial of service vulnerability when copying large XML tables; the post merely announces the flaw without providing exploit details, PoC, or patch information.

    00000133
    56.5K followersView on X
CPE platform detail3 entries

3 of 3 entries

PartVendorProductVersionTarget SWTarget HW
Appibmdb2-linux-
Appibmdb2-unix-
Appibmdb2-windows-

Explore more