CVE漏洞中文网

0DayBank一个专门收集整理全球互联网漏洞的公开发布网站
  1. 首页
  2. CVE
  3. 正文

CVE-2017-1297 IBM DB2 LUW Command Line Processor Buffer Overflow Vulnerability (swg22004878)

2017年8月19日 1667点热度 0人点赞 0条评论

漏洞类别:Database

漏洞等级:

漏洞信息

IBM DB2 Command Line Process (CLP) is vulnerable to a stack based buffer overflow, caused by improper bounds checking which could allow a local attacker to execute arbitrary code. Affected Versions:-
DB2 versions 9.7 prior to Fix Pack 11
DB2 versions 10.1 prior to Fix Pack 6
DB2 versions 10.5 prior to Fix Pack 8

DB2 versions 11.1 prior to 11.1.2 Fix Pack 2

漏洞危害

Successful exploitation could allow a local attacker to execute arbitrary code

解决方案

The vulnerability has been resolved in the following versions:
IT20570 IBM DB2 versions 9.7 Fix Pack 11
IT20571 IBM DB2 versions 10.1 Fix Pack 6
IT20498 IBM DB2 versions 10.5 Fix Pack 8
IT20562 IBM DB2 versions 11.1.2 Fix Pack 2

Patch:
Following are links for downloading patches to fix the vulnerabilities:

IT20570

IT20571

IT20498

IT20562

0daybank

标签: 暂无
最后更新:2017年8月29日

小助手

这个人很懒,什么都没留下

点赞
< 上一篇
下一篇 >

文章评论

您需要 登录 之后才可以评论

COPYRIGHT © 2024 www.pdr.cn CVE漏洞中文网. ALL RIGHTS RESERVED.

鲁ICP备2022031030号

联系邮箱:wpbgssyubnmsxxxkkk@proton.me