Skip to main content

IBM DB2 JDK Multiple Vulnerabilities

Last Update Date: 27 Jul 2018 09:50 Release Date: 27 Jul 2018 4304 Views

RISK: Medium Risk

TYPE: Servers - Database Servers

TYPE: Database Servers

Multiple vulnerabilities have been identified in IBM DB2 Java Development Kit (JDK). A remote user can exploit these vulnerabilities to trigger remote code execution and security restriction bypass on the targeted system.


Impact

  • Remote Code Execution
  • Security Restriction Bypass

System / Technologies affected

  • DB2 Versions 9.7, 10.1, 10.5 and 11.1

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • The vendor has issued fixes:
  • DB2 Release Fixed IBM JDK Release
    V9.7.x6.0.16.65 or later
    V10.1.x7.0.10.25 or later
    V10.5.x

    7.0.10.25 or later

    (6.0.16.65 or later for LinuxIA64)

    V11.1.x8.0.5.15 or later

 Please refer to the following URL for IBM JDK installation instructions:

 http://www-01.ibm.com/support/docview.wss?uid=swg27050993


Vulnerability Identifier


Source


Related Link