Show filters
28 Total Results
Displaying 1-10 of 28
Sort by:
Attacker Value
Unknown
CVE-2019-4057
Disclosure Date: July 01, 2019 (last updated November 27, 2024)
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 could allow malicious user with access to the DB2 instance account to leverage a fenced execution process to execute arbitrary code as root. IBM X-Force ID: 156567.
0
Attacker Value
Unknown
CVE-2019-4101
Disclosure Date: July 01, 2019 (last updated November 27, 2024)
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.1, 10.5, and 11.1 is vulnerable to a denial of service. Users that have both EXECUTE on PD_GET_DIAG_HIST and access to the diagnostic directory on the DB2 server can cause the instance to crash. IBM X-Force ID: 158091.
0
Attacker Value
Unknown
CVE-2019-4102
Disclosure Date: July 01, 2019 (last updated November 27, 2024)
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 158092.
0
Attacker Value
Unknown
CVE-2019-4154
Disclosure Date: July 01, 2019 (last updated November 27, 2024)
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to a buffer overflow, which could allow an authenticated local attacker to execute arbitrary code on the system as root. IBM X-Force ID: 158519.
0
Attacker Value
Unknown
CVE-2019-4014
Disclosure Date: April 03, 2019 (last updated November 27, 2024)
IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is vulnerable to a buffer overflow, which could allow an authenticated local attacker to execute arbitrary code on the system as root. IBM X-Force ID: 155892.
0
Attacker Value
Unknown
CVE-2018-1936
Disclosure Date: April 03, 2019 (last updated November 27, 2024)
IBM DB2 9.7, 10.1, 10.5, and 11.1 libdb2e.so.1 is vulnerable to a stack based buffer overflow, caused by improper bounds checking which could allow an attacker to execute arbitrary code. IBM X-Force ID: 153316.
0
Attacker Value
Unknown
CVE-2017-1451
Disclosure Date: September 12, 2017 (last updated November 26, 2024)
IBM DB2 for Linux, UNIX and Windows 9.7, 10,1, 10.5, and 11.1 (includes DB2 Connect Server) could allow a local user with DB2 instance owner privileges to obtain root access. IBM X-Force ID: 128178.
0
Attacker Value
Unknown
CVE-2017-1438
Disclosure Date: September 12, 2017 (last updated November 26, 2024)
IBM DB2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, and 11.1 (includes DB2 Connect Server) could allow a local user with DB2 instance owner privileges to obtain root access. IBM X-Force ID: 128057.
0
Attacker Value
Unknown
CVE-2017-1452
Disclosure Date: September 12, 2017 (last updated November 26, 2024)
IBM DB2 for Linux, UNIX and Windows 9.7, 10,1, 10.5, and 11.1 (includes DB2 Connect Server) could allow a local user to obtain elevated privilege and overwrite DB2 files. IBM X-Force ID: 128180.
0
Attacker Value
Unknown
CVE-2017-1520
Disclosure Date: September 12, 2017 (last updated November 26, 2024)
IBM DB2 9.7, 10,1, 10.5, and 11.1 is vulnerable to an unauthorized command that allows the database to be activated when authentication type is CLIENT. IBM X-Force ID: 129830.
0