IBM DB2 Multiple Vulnerabilities
RISK: Medium Risk
TYPE: Servers - Database Servers
Multiple vulnerabilities have been identified in IBM DB2. A remote user can exploit these vulnerabilities to trigger denial of service, elevation of privilege, remote code execution, security restriction bypass, sensitive information disclosure and tampering on the targeted system.
Impact
- Denial of Service
- Elevation of Privilege
- Remote Code Execution
- Security Restriction Bypass
- Information Disclosure
- Data Manipulation
System / Technologies affected
- Versions 9.7, 10.1, 10.5 and 11.1
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- The vendor has issued fixes:
https://www-01.ibm.com/support/docview.wss?uid=ibm10734059
https://www-01.ibm.com/support/docview.wss?uid=ibm10733939
https://www-01.ibm.com/support/docview.wss?uid=ibm10725491
https://www-01.ibm.com/support/docview.wss?uid=ibm10733122
Vulnerability Identifier
- CVE-2018-12539
- CVE-2018-2973
- CVE-2018-1857
- CVE-2018-1834
- CVE-2018-1802
- CVE-2018-1799
- CVE-2018-1781
- CVE-2018-1780
- CVE-2018-1656
Source
Related Link
Share with