PT-2009-5764 · Ibm · Ibm Db2

Published

2009-09-29

·

Updated

2010-10-07

·

CVE-2009-3471

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions IBM DB2 versions 8 before FP18 IBM DB2 versions 9.1 before FP8 IBM DB2 versions 9.5 before FP4 IBM DB2 versions 9.7 before FP2
Description The issue is related to the failure of IBM DB2 to drop certain table functions when their definers lose privileges. This has an unspecified impact and can be exploited remotely.
Recommendations For IBM DB2 version 8, update to FP18 or later. For IBM DB2 version 9.1, update to FP8 or later. For IBM DB2 version 9.5, update to FP4 or later. For IBM DB2 version 9.7, update to FP2 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2009-3471

Affected Products

Ibm Db2