IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to remote code execution as a database administrator of one database may execute code or read/write files from another database within the same instance. IBM X-Force ID: 252011.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Db2 | Ibm | 11.1 (including) | 11.1.4 (excluding) |
Db2 | Ibm | 11.5 (including) | 11.5.8 (excluding) |
Db2 | Ibm | 10.5 (including) | 10.5 (including) |
Db2 | Ibm | 10.5-fp1 (including) | 10.5-fp1 (including) |
Db2 | Ibm | 10.5-fp10 (including) | 10.5-fp10 (including) |
Db2 | Ibm | 10.5-fp2 (including) | 10.5-fp2 (including) |
Db2 | Ibm | 10.5-fp3 (including) | 10.5-fp3 (including) |
Db2 | Ibm | 10.5-fp3a (including) | 10.5-fp3a (including) |
Db2 | Ibm | 10.5-fp4 (including) | 10.5-fp4 (including) |
Db2 | Ibm | 10.5-fp5 (including) | 10.5-fp5 (including) |
Db2 | Ibm | 10.5-fp6 (including) | 10.5-fp6 (including) |
Db2 | Ibm | 10.5-fp7 (including) | 10.5-fp7 (including) |
Db2 | Ibm | 10.5-fp8 (including) | 10.5-fp8 (including) |
Db2 | Ibm | 10.5-fp9 (including) | 10.5-fp9 (including) |
Db2 | Ibm | 11.1.4 (including) | 11.1.4 (including) |
Db2 | Ibm | 11.1.4-fp1 (including) | 11.1.4-fp1 (including) |
Db2 | Ibm | 11.1.4-fp2 (including) | 11.1.4-fp2 (including) |
Db2 | Ibm | 11.1.4-fp3 (including) | 11.1.4-fp3 (including) |
Db2 | Ibm | 11.1.4-fp4 (including) | 11.1.4-fp4 (including) |
Db2 | Ibm | 11.1.4-fp5 (including) | 11.1.4-fp5 (including) |
Db2 | Ibm | 11.1.4-fp6 (including) | 11.1.4-fp6 (including) |