Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v93h-jxx8-f2rh

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IBM DB2 8.x before 8.1 FixPak 15 and 9.1 before Fix Pack 2 does not properly terminate certain input strings, which allows local users to execute arbitrary code via unspecified environment variables that trigger a heap-based buffer overflow.

IBM DB2 8.x before 8.1 FixPak 15 and 9.1 before Fix Pack 2 does not properly terminate certain input strings, which allows local users to execute arbitrary code via unspecified environment variables that trigger a heap-based buffer overflow.

EPSS

Процентиль: 24%
0.0008
Низкий

Дефекты

CWE-119

Связанные уязвимости

nvd
почти 19 лет назад

IBM DB2 8.x before 8.1 FixPak 15 and 9.1 before Fix Pack 2 does not properly terminate certain input strings, which allows local users to execute arbitrary code via unspecified environment variables that trigger a heap-based buffer overflow.

EPSS

Процентиль: 24%
0.0008
Низкий

Дефекты

CWE-119