Skip to content
IBMCVE-2026-10534

IBM Db2: buffer overflow

High8.4CVE-2026-10534 · Published Aug 12, 2026 · updated Aug 17, 2026

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 is vulnerable to buffer overflow in the IXF IMPORT parser.

IBM advisory

Affected versions

PackageAffectedFixed in
Db2
Product
>= 11.5.0, <= 11.5.9No fix yet
>= 12.1.0, <= 12.1.5No fix yet
Details and references
CVSS 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity from
the vendor (its own CVE record or advisory)
Weakness
CWE-121

More IBM advisories

All IBM
Advisory
IBM DataPower Gateway: race condition
Medium4.2Aug 12
IBM i: denial of service
High8.2Aug 12
IBM DOORS Next: improper authentication
Critical10.0Aug 12
IBM Db2: improper authorization
Medium4.3Aug 12
IBM i Access Client Solutions: code execution
High7.8Aug 12
IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access...
Medium6.8Aug 12

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.