CVE-2019-4606
- EPSS 0.17%
- Veröffentlicht 12.12.2019 17:15:10
- Zuletzt bearbeitet 21.11.2024 04:43:50
IBM DB2 High Performance Unload load for LUW 6.1 and 6.5 could allow a local attacker to execute arbitrary code on the system, caused by an untrusted search path vulnerability. By using a executable file, an attacker could exploit this vulnerability ...
CVE-2019-4523
- EPSS 0.21%
- Veröffentlicht 22.10.2019 15:15:10
- Zuletzt bearbeitet 21.11.2024 04:43:41
IBM DB2 High Performance Unload load for LUW 6.1 and 6.5 is vulnerable to a buffer overflow, caused by improper bounds checking which could allow a local attacker to execute arbitrary code on the system with root privileges. IBM X-Force ID: 165481.
CVE-2019-4447
- EPSS 0.04%
- Veröffentlicht 26.08.2019 15:15:13
- Zuletzt bearbeitet 21.11.2024 04:43:37
IBM DB2 High Performance Unload load for LUW 6.1, 6.1.0.1, 6.1.0.1 IF1, 6.1.0.2, 6.1.0.2 IF1, and 6.1.0.1 IF2 db2hpum_debug is a setuid root binary which trusts the PATH environment variable. A low privileged user can execute arbitrary commands as ro...
CVE-2019-4448
- EPSS 0.04%
- Veröffentlicht 26.08.2019 15:15:13
- Zuletzt bearbeitet 21.11.2024 04:43:37
IBM DB2 High Performance Unload load for LUW 6.1, 6.1.0.1, 6.1.0.1 IF1, 6.1.0.2, 6.1.0.2 IF1, and 6.1.0.1 IF2 db2hpum and db2hpum_debug binaries are setuid root and have built-in options that allow an low privileged user the ability to load arbitrary...