PT-2007-5466 · Ibm · Ibm Db2 Udb

Published

2007-08-18

·

Updated

2017-07-29

·

CVE-2007-4275

CVSS v2.0

6.9

Medium

VectorAV:L/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions IBM DB2 UDB versions 8.0 through 8.0 before Fixpak 15 IBM DB2 UDB versions 9.1 through 9.1 before Fixpak 3
Description The issue concerns untrusted search path vulnerabilities that allow local users to gain privileges. This is related to certain vectors, including DB2 instance or FMP startup on Linux and Solaris, execution of executables while running as root on non-Windows systems (such as AIX), and unspecified vectors involving db2licm and db2pd.
Recommendations For IBM DB2 UDB versions 8.0 through 8.0 before Fixpak 15, apply Fixpak 15 to resolve the issue. For IBM DB2 UDB versions 9.1 through 9.1 before Fixpak 3, apply Fixpak 3 to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-4275

Affected Products

Ibm Db2 Udb