[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247974

 
 

909

 
 

194654

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Heap-based buffer overflow vulnerability in the db2dasrrm process in IBM DB2 (Linux)

ID: oval:org.secpod.oval:def:5161Date: (C)2012-04-18   (M)2021-09-12
Class: VULNERABILITYFamily: unix




The host is installed with IBM DB2 9.1 through FP11 or 9.5 before FP9 or 9.7 through FP5 and is prone to heap-based buffer overflow vulnerability. A flaw is present in the application, which is caused by a signedness error in the db2dasrrm process. Successful exploitation allows remote attackers to overflow a buffer and execute arbitrary code on the system with DAS privileges or cause the database server to crash.

Platform:
Linux
Product:
IBM DB2
Reference:
CVE-2012-0711
CVE    1
CVE-2012-0711
CPE    5
cpe:/a:ibm:db2:9.7
cpe:/a:ibm:db2:9.7:fp3a
cpe:/a:ibm:db2
cpe:/a:ibm:db2:9.1
...

© SecPod Technologies