Lucene search

K
ibmIBM611D6A5D32C7A22643ABE0B851F18CBA5BF55F93213DF9A6CC7912D2698775DB
HistoryDec 14, 2021 - 8:41 p.m.

Security Bulletin: Multiple Vulnerabilities have been identified in IBM Db2 shipped with WebSphere Remote Server

2021-12-1420:41:20
www.ibm.com
19
ibm db2
websphere remote server
security bulletin
denial of service
buffer overflow
weak file permissions

EPSS

0.001

Percentile

48.7%

Summary

IBM Db2 is shipped with WebSphere Remote Server. Information about security vulnerabilities affecting IBM Db2 have been published in a security bulletin.

Vulnerability Details

Refer to the security bulletin(s) listed in the Remediation/Fixes section

Affected Products and Versions

Affected Product(s) Version(s)
IBM WebSphere Remote Server - Product Family All

Remediation/Fixes

Refer to the following security bulletins for vulnerability details and information about fixes addressed by IBM Db2 which is shipped with WebSphere Remote Server.

Principal Product and Version(s)

|

Affected Supporting Product and Version

|

Affected Supporting Product Security Bulletin

—|—|—

WebSphere Remote Server
7.0, 7.1, 8.5, 9.0

|

IBM Db2 9.1, 10.1, 10.5, 11.1, 11.5

|

IBM Db2 is vulnerable to a denial of service (CVE-2020-5024)

WebSphere Remote Server
7.0, 7.1, 8.5, 9.0

|

IBM Db2 9.1, 10.1, 10.5, 11.1, 11.5

|

IBM Db2 db2fm is vulnerable to a buffer overflow (CVE-2020-5025)

WebSphere Remote Server
7.0, 7.1, 8.5, 9.0

|

IBM Db2 9.1, 10.1, 10.5, 11.1, 11.5

|

IBM Db2 is vulnerable to weak file permissions allowing access to specific files (CVE-2020-4976)

Workarounds and Mitigations

None

EPSS

0.001

Percentile

48.7%

Related for 611D6A5D32C7A22643ABE0B851F18CBA5BF55F93213DF9A6CC7912D2698775DB