Page 14 of 127 results (0.007 seconds)

CVSS: 6.2EPSS: 0%CPEs: 7EXPL: 0

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow a local user to obtain sensitive information using a race condition of a symbolic link. IBM X-Force ID: 179269. IBM DB2 para Linux, UNIX y Windows (incluye DB2 Connect Server) versiones 9.7, 10.1, 10.5, 11.1 y 11.5, podría permitir a un usuario local obtener información confidencial usando una condición de carrera de un enlace simbólico. IBM X-Force ID: 179269 • https://exchange.xforce.ibmcloud.com/vulnerabilities/179269 https://www.ibm.com/support/pages/node/6242336 • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') •

CVSS: 6.2EPSS: 0%CPEs: 7EXPL: 0

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow a local user to obtain sensitive information using a race condition of a symbolic link. IBM X-Force ID: 179268. IBM DB2 para Linux, UNIX y Windows (incluye DB2 Connect Server) versiones 9.7, 10.1, 10.5, 11.1 y 11.5, podría permitir a un usuario local obtener información confidencial usando una condición de carrera de un enlace simbólico. IBM X-Force ID: 179268 • https://exchange.xforce.ibmcloud.com/vulnerabilities/179268 https://www.ibm.com/support/pages/node/6242342 • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') •

CVSS: 8.4EPSS: 0%CPEs: 7EXPL: 0

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 is vulnerable to a buffer overflow, caused by improper bounds checking which could allow a local attacker to execute arbitrary code on the system with root privileges. IBM X-Force ID: 178960. IBM DB2 para Linux, UNIX y Windows (incluye DB2 Connect Server) versiones 9.7, 10.1, 10.5, 11.1 y 11.5, es vulnerable a un desbordamiento del búfer, causado por una comprobación de límites inapropiada que podría permitir a un atacante local ejecutar código arbitrario en el sistema con privilegios root. IBM X-Force ID: 178960 • https://exchange.xforce.ibmcloud.com/vulnerabilities/178960 https://www.ibm.com/support/pages/node/6242332 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVSS: 5.3EPSS: 0%CPEs: 7EXPL: 0

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 is vulnerable to a denial of service, caused by improper handling of Secure Sockets Layer (SSL) renegotiation requests. By sending specially-crafted requests, a remote attacker could exploit this vulnerability to increase the resource usage on the system. IBM X-Force ID: 178507. IBM DB2 para Linux, UNIX y Windows (incluye DB2 Connect Server) versiones 9.7, 10.1, 10.5, 11.1 y 11.5, es vulnerable a una denegación de servicio, causada por el manejo inapropiado de las peticiones de renegociación Secure Sockets Layer (SSL). Mediante el envío de peticiones especialmente diseñadas, un atacante remoto podría explotar esta vulnerabilidad para aumentar el uso de recursos en el sistema. • https://exchange.xforce.ibmcloud.com/vulnerabilities/178507 https://www.ibm.com/support/pages/node/6242350 •

CVSS: 6.7EPSS: 0%CPEs: 5EXPL: 0

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.1 and 11.5 is vulnerable to an escalation of privilege when an authenticated local attacker with special permissions executes specially crafted Db2 commands. IBM X-Force ID: 175212. IBM DB2 para Linux, UNIX y Windows (incluye DB2 Connect Server) versiones 11.1 y 11.5, son vulnerables a una escalada de privilegios cuando un atacante local autenticado con permisos especiales ejecuta comandos Db2 especialmente diseñados. ID de IBM X-Force: 175212. • https://exchange.xforce.ibmcloud.com/vulnerabilities/175212 https://www.ibm.com/support/pages/node/2878809 •