Show filters
124 Total Results
Displaying 61-70 of 124
Sort by:
Attacker Value
Unknown

CVE-2017-1677

Disclosure Date: March 22, 2018 (last updated November 26, 2024)
IBM Data Server Driver for JDBC and SQLJ (IBM DB2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, and 11.1) deserializes the contents of /tmp/connlicj.bin which leads to object injection and potentially arbitrary code execution depending on the classpath. IBM X-Force ID: 133999.
0
Attacker Value
Unknown

CVE-2018-1428

Disclosure Date: March 22, 2018 (last updated November 26, 2024)
IBM GSKit (IBM DB2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, and 11.1) uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 139073.
0
Attacker Value
Unknown

CVE-2016-0215

Disclosure Date: January 16, 2018 (last updated November 26, 2024)
IBM DB2 9.7, 10.1 before FP6, and 10.5 before FP8 on AIX, Linux, HP, Solaris and Windows allow remote authenticated users to cause a denial of service (daemon crash) via a SELECT statement with a subquery containing the AVG OLAP function on an Oracle compatible database.
0
Attacker Value
Unknown

CVE-2017-1451

Disclosure Date: September 12, 2017 (last updated November 26, 2024)
IBM DB2 for Linux, UNIX and Windows 9.7, 10,1, 10.5, and 11.1 (includes DB2 Connect Server) could allow a local user with DB2 instance owner privileges to obtain root access. IBM X-Force ID: 128178.
0
Attacker Value
Unknown

CVE-2017-1438

Disclosure Date: September 12, 2017 (last updated November 26, 2024)
IBM DB2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, and 11.1 (includes DB2 Connect Server) could allow a local user with DB2 instance owner privileges to obtain root access. IBM X-Force ID: 128057.
0
Attacker Value
Unknown

CVE-2017-1452

Disclosure Date: September 12, 2017 (last updated November 26, 2024)
IBM DB2 for Linux, UNIX and Windows 9.7, 10,1, 10.5, and 11.1 (includes DB2 Connect Server) could allow a local user to obtain elevated privilege and overwrite DB2 files. IBM X-Force ID: 128180.
0
Attacker Value
Unknown

CVE-2017-1520

Disclosure Date: September 12, 2017 (last updated November 26, 2024)
IBM DB2 9.7, 10,1, 10.5, and 11.1 is vulnerable to an unauthorized command that allows the database to be activated when authentication type is CLIENT. IBM X-Force ID: 129830.
0
Attacker Value
Unknown

CVE-2017-1439

Disclosure Date: September 12, 2017 (last updated November 26, 2024)
IBM DB2 for Linux, UNIX and Windows 9.7, 10,1, 10.5, and 11.1 (includes DB2 Connect Server) could allow a local user with DB2 instance owner privileges to obtain root access. IBM X-Force ID: 128058.
0
Attacker Value
Unknown

CVE-2017-1297

Disclosure Date: June 27, 2017 (last updated November 26, 2024)
IBM DB2 for Linux, UNIX and Windows 9.2, 10.1, 10.5, and 11.1 (includes DB2 Connect Server) is vulnerable to a stack-based buffer overflow, caused by improper bounds checking which could allow a local attacker to execute arbitrary code. IBM X-Force ID: 125159.
0
Attacker Value
Unknown

CVE-2017-1105

Disclosure Date: June 27, 2017 (last updated November 26, 2024)
IBM DB2 for Linux, UNIX and Windows 9.2, 10.1, 10.5, and 11.1 (includes DB2 Connect Server) is vulnerable to a buffer overflow that could allow a local user to overwrite DB2 files or cause a denial of service. IBM X-Force ID: 120668.
0