PT-2007-5467 · Ibm · Ibm Db2 Udb
Publicado
2007-08-18
·
Atualizado
2017-07-29
·
CVE-2007-4276
CVSS v2.0
6.9
Média
| Vetor | AV:L/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
IBM DB2 UDB versions 8.0 through 8.0 before Fixpak 15
IBM DB2 UDB versions 9.1 through 9.1 before Fixpak 3
Description
A stack-based buffer overflow issue allows attackers to execute arbitrary code via a long DASPROF and possibly other environment variables, which are copied into the
buildDasPaths buffer.Recommendations
For IBM DB2 UDB version 8, apply Fixpak 15 to resolve the issue.
For IBM DB2 UDB version 9.1, apply Fixpak 3 to resolve the issue.
Correção
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ibm Db2 Udb