Buffer Overflow Vulnerability in IBM DB2 High Performance Unload for LUW
CVE-2019-4523
8.4HIGH
Key Information:
- Vendor
- IBM
- Vendor
- CVE Published:
- 22 October 2019
Summary
IBM DB2 High Performance Unload for LUW versions 6.1 and 6.5 are susceptible to a buffer overflow due to inadequate bounds checking. This vulnerability can be exploited by a local attacker to execute arbitrary code, potentially gaining root privileges on the affected system. Proper mitigation measures should be taken to address this security concern.
Affected Version(s)
Db2 High Performance Unload load for LUW 6.5
DB2 High Performance Unload load for LUW 6.1
References
CVSS V3.1
Score:
8.4
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved