IBM DB2 JDK Multiple Vulnerabilities
RISK: Medium Risk
TYPE: Servers - Database Servers
Multiple vulnerabilities have been identified in IBM DB2 Java Development Kit (JDK). A remote user can exploit these vulnerabilities to trigger remote code execution and security restriction bypass on the targeted system.
Impact
- Remote Code Execution
- Security Restriction Bypass
System / Technologies affected
- DB2 Versions 9.7, 10.1, 10.5 and 11.1
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- The vendor has issued fixes:
DB2 Release | Fixed IBM JDK Release |
---|---|
V9.7.x | 6.0.16.65 or later |
V10.1.x | 7.0.10.25 or later |
V10.5.x | 7.0.10.25 or later (6.0.16.65 or later for LinuxIA64) |
V11.1.x | 8.0.5.15 or later |
Please refer to the following URL for IBM JDK installation instructions:
http://www-01.ibm.com/support/docview.wss?uid=swg27050993
Vulnerability Identifier
Source
Related Link
Share with