CVE Vulnerabilities

CVE-2017-1439

Published: Sep 12, 2017 | Modified: Apr 20, 2025
CVSS 3.x
6.7
MEDIUM
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

IBM DB2 for Linux, UNIX and Windows 9.7, 10,1, 10.5, and 11.1 (includes DB2 Connect Server) could allow a local user with DB2 instance owner privileges to obtain root access. IBM X-Force ID: 128058.

Affected Software

NameVendorStart VersionEnd Version
Db2Ibm9.7 (including)9.7 (including)
Db2Ibm9.7.0.1 (including)9.7.0.1 (including)
Db2Ibm9.7.0.2 (including)9.7.0.2 (including)
Db2Ibm9.7.0.3 (including)9.7.0.3 (including)
Db2Ibm9.7.0.4 (including)9.7.0.4 (including)
Db2Ibm9.7.0.5 (including)9.7.0.5 (including)
Db2Ibm9.7.0.6 (including)9.7.0.6 (including)
Db2Ibm9.7.0.7 (including)9.7.0.7 (including)
Db2Ibm9.7.0.8 (including)9.7.0.8 (including)
Db2Ibm9.7.0.9 (including)9.7.0.9 (including)
Db2Ibm9.7.0.9-a (including)9.7.0.9-a (including)
Db2Ibm9.7.0.10 (including)9.7.0.10 (including)
Db2Ibm9.7.0.11 (including)9.7.0.11 (including)
Db2Ibm10.1 (including)10.1 (including)
Db2Ibm10.1.0.1 (including)10.1.0.1 (including)
Db2Ibm10.1.0.2 (including)10.1.0.2 (including)
Db2Ibm10.1.0.3 (including)10.1.0.3 (including)
Db2Ibm10.1.0.4 (including)10.1.0.4 (including)
Db2Ibm10.1.0.5 (including)10.1.0.5 (including)
Db2Ibm10.5 (including)10.5 (including)
Db2Ibm10.5.0.1 (including)10.5.0.1 (including)
Db2Ibm10.5.0.2 (including)10.5.0.2 (including)
Db2Ibm10.5.0.3 (including)10.5.0.3 (including)
Db2Ibm10.5.0.3-a (including)10.5.0.3-a (including)
Db2Ibm10.5.0.4 (including)10.5.0.4 (including)
Db2Ibm10.5.0.5 (including)10.5.0.5 (including)
Db2Ibm10.5.0.6 (including)10.5.0.6 (including)
Db2Ibm10.5.0.7 (including)10.5.0.7 (including)
Db2Ibm11.1.0.0 (including)11.1.0.0 (including)
Db2_connectIbm9.7 (including)9.7 (including)
Db2_connectIbm9.7.0.1 (including)9.7.0.1 (including)
Db2_connectIbm9.7.0.2 (including)9.7.0.2 (including)
Db2_connectIbm9.7.0.3 (including)9.7.0.3 (including)
Db2_connectIbm9.7.0.4 (including)9.7.0.4 (including)
Db2_connectIbm9.7.0.5 (including)9.7.0.5 (including)
Db2_connectIbm9.7.0.6 (including)9.7.0.6 (including)
Db2_connectIbm9.7.0.7 (including)9.7.0.7 (including)
Db2_connectIbm9.7.0.8 (including)9.7.0.8 (including)
Db2_connectIbm9.7.0.9 (including)9.7.0.9 (including)
Db2_connectIbm9.7.0.10 (including)9.7.0.10 (including)
Db2_connectIbm9.7.0.11 (including)9.7.0.11 (including)
Db2_connectIbm10.1 (including)10.1 (including)
Db2_connectIbm10.1.0.1 (including)10.1.0.1 (including)
Db2_connectIbm10.1.0.2 (including)10.1.0.2 (including)
Db2_connectIbm10.1.0.3 (including)10.1.0.3 (including)
Db2_connectIbm10.1.0.4 (including)10.1.0.4 (including)
Db2_connectIbm10.1.0.5 (including)10.1.0.5 (including)
Db2_connectIbm10.5 (including)10.5 (including)
Db2_connectIbm10.5.0.1 (including)10.5.0.1 (including)
Db2_connectIbm10.5.0.2 (including)10.5.0.2 (including)
Db2_connectIbm10.5.0.3 (including)10.5.0.3 (including)
Db2_connectIbm10.5.0.4 (including)10.5.0.4 (including)
Db2_connectIbm10.5.0.5 (including)10.5.0.5 (including)
Db2_connectIbm10.5.0.6 (including)10.5.0.6 (including)
Db2_connectIbm10.5.0.7 (including)10.5.0.7 (including)
Db2_connectIbm11.1.0.0 (including)11.1.0.0 (including)

References