CVE Vulnerabilities

CVE-2023-42005

Published: May 29, 2024 | Modified: Aug 18, 2025
CVSS 3.x
8.8
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

IBM Db2 on Cloud Pak for Data and Db2 Warehouse on Cloud Pak for Data 3.5, 4.0, 4.5, 4.6, 4.7, and 4.8 could allow a user with access to the Kubernetes pod, to make system calls compromising the security of containers. IBM X-Force ID: 265264.

Affected Software

NameVendorStart VersionEnd Version
Db2Ibm3.5 (including)3.5 (including)
Db2Ibm3.5-refresh_10 (including)3.5-refresh_10 (including)
Db2Ibm4.0 (including)4.0 (including)
Db2Ibm4.0-refresh_9 (including)4.0-refresh_9 (including)
Db2Ibm4.5 (including)4.5 (including)
Db2Ibm4.5-refresh_3 (including)4.5-refresh_3 (including)
Db2Ibm4.6 (including)4.6 (including)
Db2Ibm4.6-refresh_6 (including)4.6-refresh_6 (including)
Db2Ibm4.7 (including)4.7 (including)
Db2Ibm4.7-refresh_4 (including)4.7-refresh_4 (including)
Db2Ibm4.8 (including)4.8 (including)
Db2Ibm4.8-refresh_4 (including)4.8-refresh_4 (including)
Db2_warehouseIbm3.5 (including)3.5 (including)
Db2_warehouseIbm3.5-refresh_10 (including)3.5-refresh_10 (including)
Db2_warehouseIbm4.0 (including)4.0 (including)
Db2_warehouseIbm4.0-refresh_9 (including)4.0-refresh_9 (including)
Db2_warehouseIbm4.5 (including)4.5 (including)
Db2_warehouseIbm4.5-refresh_3 (including)4.5-refresh_3 (including)
Db2_warehouseIbm4.6 (including)4.6 (including)
Db2_warehouseIbm4.6-refresh_6 (including)4.6-refresh_6 (including)
Db2_warehouseIbm4.7 (including)4.7 (including)
Db2_warehouseIbm4.7-refresh_4 (including)4.7-refresh_4 (including)
Db2_warehouseIbm4.8 (including)4.8 (including)
Db2_warehouseIbm4.8-refresh_4 (including)4.8-refresh_4 (including)

References