IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, and 11.1 is affected by buffer overflow vulnerability that can potentially result in arbitrary code execution. IBM X-Force ID: 152859.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/107398 | Third Party Advisory VDB Entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/152859 | VDB Entry Vendor Advisory |
https://www.ibm.com/support/docview.wss?uid=ibm10740413 | Patch Vendor Advisory |
http://www.securityfocus.com/bid/107398 | Third Party Advisory VDB Entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/152859 | VDB Entry Vendor Advisory |
https://www.ibm.com/support/docview.wss?uid=ibm10740413 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
History
21 Nov 2024, 04:00
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/bid/107398 - Third Party Advisory, VDB Entry | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/152859 - VDB Entry, Vendor Advisory | |
References | () https://www.ibm.com/support/docview.wss?uid=ibm10740413 - Patch, Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : 4.6
v3 : 8.4 |
Information
Published : 2019-03-11 22:29
Updated : 2024-11-21 04:00
NVD link : CVE-2018-1923
Mitre link : CVE-2018-1923
CVE.ORG link : CVE-2018-1923
JSON object : View
Products Affected
linux
- linux_kernel
ibm
- db2
microsoft
- windows
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer