Dennis' Domino Blog
« IBM WebSphere Application Server Administration Console Cross Site Scripting Vulnerabilityxpages: Theme's and css media types »

IBM DB2 prior to 9.7 Fix Pack 2 Multiple Security Vulnerabilities

Permalink 06/01/10 10:55, by Dennis van Remortel, Categories: security
IBM DB2 prior to 9.7 Fix Pack 2 Multiple Security Vulnerabilities

Bugtraq ID:	40446
Class:		Unknown
CVE:		CVE-2010-0472
Remote:		Yes
Local:		Yes
Published:	May 28 2010 12:00AM
Updated:	May 31 2010 03:50PM
Credit:		The vendor disclosed these issues.
Vulnerable:	IBM DB2 Universal Database 9.7.1
		IBM DB2 Universal Database 9.7
Not Vulnerable:	IBM DB2 Universal Database 9.7.2 

IBM DB2 is prone to multiple vulnerabilities.

These issues may allow attackers to carry out denial-of-service attacks, obtain sensitive information, and exploit an unspecified vulnerability with an unknown impact.

These issues affect IBM DB2 9.2 prior to Fix Pack 2 (9.7.2). 

Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: vuldb@securityfocus.com.

Some of these issues may not require exploit code. 

Solution:
The vendor has released fixes. Please see the references for details.

References:
* IBM DB2 Homepage (IBM)
* 1432298 Security Vulnerabilities and HIPER APARs fixed in DB2 for Linux, UNIX, a (IBM)


Leave a comment »

No feedback yet

Leave a comment


Your email address will not be revealed on this site.

Your URL will be displayed.
PoorExcellent
(Line breaks become <br />)
(Name, email & website)
(Allow users to contact you through a message form (your email will not be revealed.)
What Lotus product is discussed mainly here? The answer is domino
antispam test
Yet another Domino/Websphere Admin blog.

About me:
Lotus Notes/Domino Admin
Websphere Commerce Admin
sceptic
critic



Search

XML Feeds

Planet Lotus

powered by b2evolution

©2010 by Dennis van Remortel

Contact | b2evo skins by Asevo | multiblog | hosting companies