Описание
Stack-based buffer overflow in IBM DB2 8.x before 8.1 FixPak 15 and 9.1 before Fix Pack 2 allows local users to execute arbitrary code via a long string in unspecified environment variables.
Ссылки
- Broken Link
- Broken Link
- PatchVendor Advisory
- Third Party Advisory
- PatchThird Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Broken Link
- Broken Link
- PatchVendor Advisory
- Third Party Advisory
- PatchThird Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:ibm:db2:8.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.0:fp13:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.0:fp14:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.0:fp8:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.0:fp9:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.1:fp13:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.1:fp14:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.1.4:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.1.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.1.6:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.1.6c:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.1.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.1.7b:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.1.8:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.1.8a:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.1.9:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:8.1.9a:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:9.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:9.1:fp1:*:*:*:*:*:*
EPSS
Процентиль: 24%
0.0008
Низкий
7.2 High
CVSS2
Дефекты
CWE-119
Связанные уязвимости
github
почти 4 года назад
Stack-based buffer overflow in IBM DB2 8.x before 8.1 FixPak 15 and 9.1 before Fix Pack 2 allows local users to execute arbitrary code via a long string in unspecified environment variables.
EPSS
Процентиль: 24%
0.0008
Низкий
7.2 High
CVSS2
Дефекты
CWE-119