Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2013-3475

Опубликовано: 05 июн. 2013
Источник: nvd
CVSS2: 7.2
EPSS Низкий

Описание

Stack-based buffer overflow in db2aud in the Audit Facility in IBM DB2 and DB2 Connect 9.1, 9.5, 9.7, 9.8, and 10.1, as used in Smart Analytics System 7600 and other products, allows local users to gain privileges via unspecified vectors.

Комментарий

Per: http://www-01.ibm.com/support/docview.wss?uid=swg21639355

'The following IBM DB2 and DB2 Connect V9.1, V9.5, V9.7 and V10.1 editions running on AIX, Linux, HP and Solaris (this vulnerability is not applicable to DB2 on Windows.).'

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:ibm:db2:9.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:9.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:9.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:9.8:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:10.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:9.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:9.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:9.7:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:9.8:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2_connect:10.1:*:*:*:*:*:*:*
cpe:2.3:h:ibm:smart_analytics_system_7600:-:*:*:*:*:*:*:*

EPSS

Процентиль: 25%
0.00086
Низкий

7.2 High

CVSS2

Дефекты

CWE-119

Связанные уязвимости

github
больше 3 лет назад

Stack-based buffer overflow in db2aud in the Audit Facility in IBM DB2 and DB2 Connect 9.1, 9.5, 9.7, 9.8, and 10.1, as used in Smart Analytics System 7600 and other products, allows local users to gain privileges via unspecified vectors.

EPSS

Процентиль: 25%
0.00086
Низкий

7.2 High

CVSS2

Дефекты

CWE-119