Show filters
124 Total Results
Displaying 61-70 of 124
Sort by:
Attacker Value
Unknown
CVE-2017-1677
Disclosure Date: March 22, 2018 (last updated November 26, 2024)
IBM Data Server Driver for JDBC and SQLJ (IBM DB2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, and 11.1) deserializes the contents of /tmp/connlicj.bin which leads to object injection and potentially arbitrary code execution depending on the classpath. IBM X-Force ID: 133999.
0
Attacker Value
Unknown
CVE-2018-1428
Disclosure Date: March 22, 2018 (last updated November 26, 2024)
IBM GSKit (IBM DB2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, and 11.1) uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 139073.
0
Attacker Value
Unknown
CVE-2016-0215
Disclosure Date: January 16, 2018 (last updated November 26, 2024)
IBM DB2 9.7, 10.1 before FP6, and 10.5 before FP8 on AIX, Linux, HP, Solaris and Windows allow remote authenticated users to cause a denial of service (daemon crash) via a SELECT statement with a subquery containing the AVG OLAP function on an Oracle compatible database.
0
Attacker Value
Unknown
CVE-2017-1451
Disclosure Date: September 12, 2017 (last updated November 26, 2024)
IBM DB2 for Linux, UNIX and Windows 9.7, 10,1, 10.5, and 11.1 (includes DB2 Connect Server) could allow a local user with DB2 instance owner privileges to obtain root access. IBM X-Force ID: 128178.
0
Attacker Value
Unknown
CVE-2017-1438
Disclosure Date: September 12, 2017 (last updated November 26, 2024)
IBM DB2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, and 11.1 (includes DB2 Connect Server) could allow a local user with DB2 instance owner privileges to obtain root access. IBM X-Force ID: 128057.
0
Attacker Value
Unknown
CVE-2017-1452
Disclosure Date: September 12, 2017 (last updated November 26, 2024)
IBM DB2 for Linux, UNIX and Windows 9.7, 10,1, 10.5, and 11.1 (includes DB2 Connect Server) could allow a local user to obtain elevated privilege and overwrite DB2 files. IBM X-Force ID: 128180.
0
Attacker Value
Unknown
CVE-2017-1520
Disclosure Date: September 12, 2017 (last updated November 26, 2024)
IBM DB2 9.7, 10,1, 10.5, and 11.1 is vulnerable to an unauthorized command that allows the database to be activated when authentication type is CLIENT. IBM X-Force ID: 129830.
0
Attacker Value
Unknown
CVE-2017-1439
Disclosure Date: September 12, 2017 (last updated November 26, 2024)
IBM DB2 for Linux, UNIX and Windows 9.7, 10,1, 10.5, and 11.1 (includes DB2 Connect Server) could allow a local user with DB2 instance owner privileges to obtain root access. IBM X-Force ID: 128058.
0
Attacker Value
Unknown
CVE-2017-1297
Disclosure Date: June 27, 2017 (last updated November 26, 2024)
IBM DB2 for Linux, UNIX and Windows 9.2, 10.1, 10.5, and 11.1 (includes DB2 Connect Server) is vulnerable to a stack-based buffer overflow, caused by improper bounds checking which could allow a local attacker to execute arbitrary code. IBM X-Force ID: 125159.
0
Attacker Value
Unknown
CVE-2017-1105
Disclosure Date: June 27, 2017 (last updated November 26, 2024)
IBM DB2 for Linux, UNIX and Windows 9.2, 10.1, 10.5, and 11.1 (includes DB2 Connect Server) is vulnerable to a buffer overflow that could allow a local user to overwrite DB2 files or cause a denial of service. IBM X-Force ID: 120668.
0