CVE Vulnerabilities

CVE-2017-1438

Published: Sep 12, 2017 | Modified: Oct 03, 2019
CVSS 3.x
6.7
MEDIUM
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

IBM DB2 for Linux, UNIX and Windows 9.7, 10.1, 10.5, and 11.1 (includes DB2 Connect Server) could allow a local user with DB2 instance owner privileges to obtain root access. IBM X-Force ID: 128057.

Affected Software

Name Vendor Start Version End Version
Db2 Ibm 9.7 (including) 9.7 (including)
Db2 Ibm 9.7.0.1 (including) 9.7.0.1 (including)
Db2 Ibm 9.7.0.2 (including) 9.7.0.2 (including)
Db2 Ibm 9.7.0.3 (including) 9.7.0.3 (including)
Db2 Ibm 9.7.0.4 (including) 9.7.0.4 (including)
Db2 Ibm 9.7.0.5 (including) 9.7.0.5 (including)
Db2 Ibm 9.7.0.6 (including) 9.7.0.6 (including)
Db2 Ibm 9.7.0.7 (including) 9.7.0.7 (including)
Db2 Ibm 9.7.0.8 (including) 9.7.0.8 (including)
Db2 Ibm 9.7.0.9 (including) 9.7.0.9 (including)
Db2 Ibm 9.7.0.9-a (including) 9.7.0.9-a (including)
Db2 Ibm 9.7.0.10 (including) 9.7.0.10 (including)
Db2 Ibm 9.7.0.11 (including) 9.7.0.11 (including)
Db2 Ibm 10.1 (including) 10.1 (including)
Db2 Ibm 10.1.0.1 (including) 10.1.0.1 (including)
Db2 Ibm 10.1.0.2 (including) 10.1.0.2 (including)
Db2 Ibm 10.1.0.3 (including) 10.1.0.3 (including)
Db2 Ibm 10.1.0.4 (including) 10.1.0.4 (including)
Db2 Ibm 10.1.0.5 (including) 10.1.0.5 (including)
Db2 Ibm 10.5 (including) 10.5 (including)
Db2 Ibm 10.5.0.1 (including) 10.5.0.1 (including)
Db2 Ibm 10.5.0.2 (including) 10.5.0.2 (including)
Db2 Ibm 10.5.0.3 (including) 10.5.0.3 (including)
Db2 Ibm 10.5.0.3-a (including) 10.5.0.3-a (including)
Db2 Ibm 10.5.0.4 (including) 10.5.0.4 (including)
Db2 Ibm 10.5.0.5 (including) 10.5.0.5 (including)
Db2 Ibm 10.5.0.6 (including) 10.5.0.6 (including)
Db2 Ibm 10.5.0.7 (including) 10.5.0.7 (including)
Db2 Ibm 11.1.0.0 (including) 11.1.0.0 (including)
Db2_connect Ibm 9.7 (including) 9.7 (including)
Db2_connect Ibm 9.7.0.1 (including) 9.7.0.1 (including)
Db2_connect Ibm 9.7.0.2 (including) 9.7.0.2 (including)
Db2_connect Ibm 9.7.0.3 (including) 9.7.0.3 (including)
Db2_connect Ibm 9.7.0.4 (including) 9.7.0.4 (including)
Db2_connect Ibm 9.7.0.5 (including) 9.7.0.5 (including)
Db2_connect Ibm 9.7.0.6 (including) 9.7.0.6 (including)
Db2_connect Ibm 9.7.0.7 (including) 9.7.0.7 (including)
Db2_connect Ibm 9.7.0.8 (including) 9.7.0.8 (including)
Db2_connect Ibm 9.7.0.9 (including) 9.7.0.9 (including)
Db2_connect Ibm 9.7.0.10 (including) 9.7.0.10 (including)
Db2_connect Ibm 9.7.0.11 (including) 9.7.0.11 (including)
Db2_connect Ibm 10.1 (including) 10.1 (including)
Db2_connect Ibm 10.1.0.1 (including) 10.1.0.1 (including)
Db2_connect Ibm 10.1.0.2 (including) 10.1.0.2 (including)
Db2_connect Ibm 10.1.0.3 (including) 10.1.0.3 (including)
Db2_connect Ibm 10.1.0.4 (including) 10.1.0.4 (including)
Db2_connect Ibm 10.1.0.5 (including) 10.1.0.5 (including)
Db2_connect Ibm 10.5 (including) 10.5 (including)
Db2_connect Ibm 10.5.0.1 (including) 10.5.0.1 (including)
Db2_connect Ibm 10.5.0.2 (including) 10.5.0.2 (including)
Db2_connect Ibm 10.5.0.3 (including) 10.5.0.3 (including)
Db2_connect Ibm 10.5.0.4 (including) 10.5.0.4 (including)
Db2_connect Ibm 10.5.0.5 (including) 10.5.0.5 (including)
Db2_connect Ibm 10.5.0.6 (including) 10.5.0.6 (including)
Db2_connect Ibm 10.5.0.7 (including) 10.5.0.7 (including)
Db2_connect Ibm 11.1.0.0 (including) 11.1.0.0 (including)

References